Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Info
titleNEW!

This feature is new in Arellia v8.1.

 

...

Tip
titleAMS Administrators Membership Required

You must have Full Access rights to modify or clone a security descriptor; AMS Administrators members have Full Access rights. If you are not a member of the AMS Administrators role, then contact a member of that group to apply these changes. 

 

The Resources that a user has access to can be restricted to a limited scope. This is often referred to as Resource Scoping. In the Arellia Management Server this is typically accomplished by scoping the resources that a user has access to by using Active Directory organizational units or groups. There are 2 steps to enable resource scoping:

  1. Enable Resource Scoping on a Resource Type
  2. Set the Security on the Scoped Resources

 

Anchor
Type
Type
Enable Resource Scoping on a Resource Type

To enable Resource Scoping in Arellia, do the following:

  1. Open the Configuration Tab of the Arellia Security Manager
  2. Navigate to Settings > Configuration > Resource Settings > Resource Types
  3. Select the Resource Type that you want to scope
    Image Added
  4. Then select the Security Scope Set 
    Image Added
  5. To use Active Directory scoping, select Active Directory Domains 
    Image Added
  6. Save the Resource Type

 

Anchor
SetSecurity
SetSecurity
Set the Security on the Scoped Resources

  1. Open the Resources Tab 
  2. Navigate to an Organizational Unit or Group that contains the resources to be scoped
  3. Right-click and select Properties 
    Image Added
  4. Click the Security tab.
  5. Select Security descriptor and click the Select... link.
  6. Click the security descriptor you want to use.
    Image Added
  7. Click Save.
  8. Repeat these steps for each of the Scoped Resources

 

 

Limit User Access to Passwords