Adaxes HelpShow AllHide All

Creating Security Role

To create a Security Role:

  1. Launch the Adaxes Administration Console.

  2. In the Console Tree, expand the service node, in which you want to create a new Security Role (the icon represents service nodes).

  3. Right-click any object under the expanded service node, point to New, and then click Security Role.

    -or-

    Click on the toolbar.

  4. In the Security Role Creation wizard that starts, type the new Role name and an optional description.

    [Tip]Tip

    If you do not need this Security Role to be effective immediately after its creation, clear the Enabled check box.

  5. Click Next.

  6. In the Role Permissions page, click Add.

    [Tip]Tip

    You can also click the arrow inside the Add button to add permissions for common predefined tasks.

  7. Specify the object types to apply permissions to. By default, all object types are selected. To apply permissions to selected object types only, click the Only selected object types radio button and check the object types you need.

    [Tip]Tip

    To view the whole list of available object types, check Show all objects types below.

  8. Specify the appropriate permissions and click OK.

    [Tip]Tip

    For more information, see Security Role Permissions.

  9. If you want the new Security Role to inherit permissions from existing Roles, click Specify Parent Roles and check the Roles to inherit from.

    [Tip]Tip

    To view the permissions inherited from Parent Roles, check Show inherited permissions under the Permission Entries list.

    [Tip]Tip

    To delete a Parent Role, right-click it and select Delete.

  10. Click Next.

  11. In the Assign Role page, select the trustees to assign the new Role to and click Assign.

    [Tip]Tip

    Distribution groups are not displayed in the search results list as Security Roles cannot be assigned to groups of this type.

    [Tip]Tip

    To find a specific trustee, you can type its name or several starting characters of it in the edit box located right above the search results list.

    [Tip]Tip

    To search in a certain managed domain, select the corresponding object in the Look in combo box.

  12. In the Role Activity Scope dialog box that opens, select the objects, for which the specified trustees will perform the new Role, and click Add.

    [Tip]Tip

    You can also exclude certain objects from the activity scope. To do so, select the object you want to exclude, click Add, then check Exclude the selection in the Assignment Options dialog box.

    [Tip]Tip

    To find a specific object, you can type its name or several starting characters of it in the edit box, located right above the search results list.

    [Tip]Tip

    To search in a certain managed domain, or specify a Business Unit as an Activity Scope item, select the corresponding object in the Look in combo-box.

    [Tip]Tip

    If the object types you need are not displayed, click Object Types below the search results list, and check the object types to search for.

  13. Define the Assignment Options and click OK two times.

  14. Click Finish.

[Note]Note

It is not necessary to select the Security Roles container in the Console Tree to create a Security Role. Just right-click any object in the Console Tree or Results Pane, when connected to the service, then point to New, and click Security Role.

[Note]Note

You can group Security Roles in containers. To do so, right-click the Security Roles container in the Console Tree, point to New, and click Container. To create a Security Role in a certain container, select the container in the Console Tree, right-click it, then point to New, and click Security Role.

See Also