Using the NMSAF Security Solution › Using Groups and Modeling with NMSAF
Using Groups and Modeling with NMSAF
With user groups, you can classify users by the type of functions that they have access to. User groups are defined in the UAMS file. The following default groups are defined during installation:
- Administrator
- Network Operator
- Operator
- Monitor
If these groups do not suit your requirements, you can define others.
Benefits of Using Groups and Modeling
User groups simplify the definition of user recordsa user is allocated to a group, inheriting all of its access authorizations.
Using both groups and modeling provides the following combination of benefits:
- When your region models a user, a copy of the model user ID record is produced.
- By containing only the group name in this record, you ensure that the UAMS records (created as users are modeled) contain only unique user-specific information (such as user ID, user name, and phone number).
- To change the profiles of all users in a group, you need only change the group entry in UAMS.
- To move a user from one group to another, you need only update the user's UAMS record to point to the correct group name.
- When a user logs on to your product region for the first time, that user is tested against the listed resource names. When a resource that the user has permission to access is found, the associated model definition is used to create the user's UAMS record. The user is prompted to supply specific information, such as name and phone number. However, everything else is taken from the model user for the appropriate group.
Copyright © 2010 CA.
All rights reserved.