Previous Topic: Specify Access Rights to Class PermissionsNext Topic: Default Class Permissions for Certificate Profiles


Security Group Permissions Dialog

The Security Group Permissions Dialog lets you specify the group or folder level permissions.

This dialog contains the following fields:

Object Name

Displays the name of the selected group. If you have selected more than one group, the field states Multiple Objects.

Object Class

Displays the object class name.

Owner

Displays the name of the user who has ownership of the group. When the system is the owner, the ownership appears as Unassigned. If you have selected more than one group with any of them having a different owner, the owner appears as Multiple Owners.

User Permissions

Displays the access rights of the currently logged in user, on the selected object.

Display built-in certificate-based profiles

Displays the built-in certificate profiles such as the x509 certificate profiles, when selected.

Default: Not selected

Security Areas

Opens the Security Area Linkages dialog that lets you define the security area linkages for the selected groups.

Take Ownership

Assigns the ownership of the selected groups to the currently logged-in user.

Important! This action is irreversible even if you cancel the dialog.

Check Box

Specifies whether the changes must be saved. When you change the access type, this check box gets selected automatically. To restore the previous value, clear the check box.

Note: Do not manually select this check box. This does not change the access permissions.

Security Profile Name

Lists the security profiles that are added to the security system and authorized to access. Press Ctrl+a to select all profiles in this dialog.

Type

Displays the type of the security profile, which can be one of the following:

Built-in Profiles

Includes the predefined profiles that are automatically created at the time of installation.

Local Profiles

Includes the profiles that have any operating system user or group in the domain manager.

Domain Profiles

Includes the profiles that have any operating system user or group in the domain of the domain manager or any of its trusted domains.

When you sort on the Type field, it is done in the order shown: Built-in Profiles, Local Profiles, Domain Profiles.

Object Permissions

Displays the access rights that each profile has on the selected group.

Member Permissions

Displays the access rights that each profile has on the sub-groups and members of the selected group.

Object Access

Changes the object permission specified for the current group.

Member Access

Changes the member permissions specified for the sub-groups and members of the selected group.

Note: Selecting Default overrides the member permissions with the class permissions.