Previous Topic: How You Control Host Access and Configure UNAB

Next Topic: Configure a UNAB Host or Host Group


Manage UNAB Login Authorization

To control user logins to UNAB hosts or host groups, you create a list of users or groups who are granted access. The list is then formulated into a policy that CA Access Control Enterprise Management assigns and deploys to the selected host or host group. The login policy is named login@hostName.

Note: You can use the Deployment Audit task to view the deployment status of the policy.

To manage UNAB login authorization

  1. In CA Access Control Enterprise Management, do as follows:
    1. Click Policy Management.
    2. Click the UNIX Authentication Broker subtab.
    3. Expand the Host or Host Group tree in the task menu on the left, as appropriate.

      A list of available tasks appears.

  2. Do one of the following:
  3. Type the name of the host or host group that you want to modify and click Search.

    A list of hosts or host groups that match the filter criteria appear.

  4. Select the host or host group to modify and click Select.

    The Manage Host Login Authorization: HostName or Manage Host Group Login Authorization: HostGroupName page appears.

  5. (Optional) Add a user, as follows:
    1. Select User from the pull down menu.
    2. Type the name of the user in the following format: domain/user.
    3. Click Add.

      The users you added appear in the Authorized users and groups list.

  6. (Optional) Add a group, as follows:
    1. Select Group from the pull down menu.
    2. Type the name of a group that you want to add.
    3. Click Add.

      The groups you added appear in the Authorized users and groups list.

  7. (Optional) Remove users and groups, as follows:
    1. Select the users and groups to remove in the Authorized users and groups list.
    2. Click Remove.

      The users and groups you selected are removed from the Authorized users and groups list.

  8. Click Submit.

    CA Access Control Enterprise Management assigns the updated list of users and groups to the specified host or host group.