Self - Account Management |
Authorize users to view or change their own profile information by using the Web Interface. When applying this template, select the Self built-in account as the trustee. |
Self - Group Management |
Authorize users to view or change the groups they are responsible for. When applying this template, select the Primary Owner (Managed By) or Secondary Owners built-in account as the trustee.
Note that applying only this template does not give group owners the right to view the lists of group members. The group owners should also be given Read access to the group member objects. This could be accomplished by applying the All Objects - Read All Properties template to a scope containing those objects, with the Authenticated Users built-in account selected as the trustee. |
Self - Group Membership Management |
Authorize users to add or remove their own accounts from groups. Apply this template to a scope containing the groups, with the rights assigned to the appropriate user accounts. It is advisable to add the user accounts to a certain group, and then select that group as the trustee when applying the template.
In addition to this template, the Self - Account Management template should be applied in order to allow the users to view the groups in which they have memberships (the Member Of list). The Self - Account Management template should be applied to a scope containing the user accounts, with the rights assigned to the Self built-in account (select Self as the trustee when applying the template). |
Self - Group Membership Approval Setting |
Authorize users to view or change the properties of the group that determine whether changes to the group members list require approval from the owner of the group. |