Group Properties, General Tab
The General tab of the group properties window displays general properties of the group record.
cminder12902
The General tab of the group properties window displays general properties of the group record.
This tab contains the following fields:
- Group NameDefines the name of the group.
- Full NameDefines the full name that is associated with the accessor. CA Privileged Identity Manager uses the full name to identify the accessorin audit log messages, but not for authorization.Limit:47 alphanumeric characters
- DescriptionDefines additional information that you want to include in the record. CA Privileged Identity Manager does not use this information for authorization.Limit:255 characters
- OwnerDefines the owner of a record.
- Super GroupDefines the name of the parent group.
- Group TypesSpecifies global authorization attributes for members of the group. Each global authorization attribute permits members of the group to perform certain types of functions. A group can have one or more of the following global authorization attributes:Verify that you do not assign the ADMIN attribute to groups and users that you do not want to grant administrative privileges to.
- AdministratorSpecifies that members of the group can perform administrative functions, similar to a native superuser.
- AuditorSpecifies that members of the group can monitor the system, list information in the database, and can set the audit mode for existing records.
- OperatorSpecifies that members of the group can list everything in the database and can use the secons utility.
- Password ManagerSpecifies that members of the group can modify the password settings of other users. And, can enable a user account that the serevu utility disables.
- ServerSpecifies that a process can ask members of the group for authorization and can issue the SEOSROUTE_VerifyCreate API call.