Chat now with support
Chat with Support

Active Roles 7.4.1 - Feature Guide

Starling

Table 26: Starling

Access Template

Description

Starling -Two Factor Authentication User

Gives minimal read permission required to enable Two-Factor Authentication for a user.

User Interfaces

Table 27: User Interfaces

Access Template

Description

User Interface Management-MMC Full control

Gives permission for the user to log in to the MMC interface.

User Self-management

Table 28: User Self-management

Access Template

Description

Self - Account Management

Authorize users to view or change their own profile information by using the Web Interface. When applying this template, select the Self built-in account as the trustee.

Self - Group Management

Authorize users to view or change the groups they are responsible for. When applying this template, select the Primary Owner (Managed By) or Secondary Owners built-in account as the trustee.

Note that applying only this template does not give group owners the right to view the lists of group members. The group owners should also be given Read access to the group member objects. This could be accomplished by applying the All Objects - Read All Properties template to a scope containing those objects, with the Authenticated Users built-in account selected as the trustee.

Self - Group Membership Management

Authorize users to add or remove their own accounts from groups. Apply this template to a scope containing the groups, with the rights assigned to the appropriate user accounts. It is advisable to add the user accounts to a certain group, and then select that group as the trustee when applying the template.

In addition to this template, the Self - Account Management template should be applied in order to allow the users to view the groups in which they have memberships (the Member Of list). The Self - Account Management template should be applied to a scope containing the user accounts, with the rights assigned to the Self built-in account (select Self as the trustee when applying the template).

Self - Group Membership Approval Setting

Authorize users to view or change the properties of the group that determine whether changes to the group members list require approval from the owner of the group.

 

 

Related Documents