Previous Topic: Access LevelsNext Topic: Inheritance


Advanced Rights Settings

To provide you with full control over object security, the CMC allows you to set advanced rights. These advanced rights provide increased flexibility as you define security for objects at a granular level. Use advanced rights settings, for instance, if you must customize a principal's rights to a particular object or set of objects. Most importantly, use advanced rights to explicitly deny a user or group any right that should not be permitted to change when, in the future, you make changes to group memberships or folder security levels.

The following table summarizes the options that you have when you set advanced rights.

Icon

Rights Option

Description

Check mark icon

Granted

The right is granted to a principal.

X (Denied) Icon

Denied

The right is denied to a principal.

Not specified (blank page) icon

Not Specified

The right is unspecified for a principal. By default, rights set to Not Specified are denied.

Apply to Object icon

Apply to Object

The right applies to the object. This option becomes available when you click Granted or Denied.

Apply to Sub Object icon

Apply to Sub Object

The right applies to subobjects. This option becomes available when you click Granted or Denied.