Chapter 11. Managing security for InfoPrint Manager for AIX
InfoPrint Manager Security, a feature that you administer through SMIT, lets you
protect your printing system by associating an Access Control List (ACL) with an
InfoPrint object or operation. An ACL is the list of users and groups who have
permission to do something to or with an object, and what type of permission that
is.
Note:
InfoPrint Manager Security only uses the login ID permissions. Therefore, if
a user logs in and does an SU to root or to another user, the permissions associated
with the original login ID remain in effect.
Types of permission
In InfoPrint Manager, users can have three levels of permission:
read
,
write
, and
delete
. The levels provide these types of access:
v
Read
For operations, the user can do the operation. For servers and queues, the user
can view the attributes. For destinations, the user can view attributes and submit
jobs to that destination.
v
Write
For all objects, the user can view and modify attributes.
v
Delete
For all objects, the user can view and modify attributes and can delete the object.
If you place userA on the ACL for the logical destination “print2ld” and give her
read
permission, she can send her print jobs to it and can open the “print2ld”
object to see its properties. However, she cannot make changes to those properties.
If she tried to change any of them or tried to delete the destination, she would
receive an error message. If you decide that userA needs to be able to do more and
give her
write
permission as well, she will be able to change the properties of
“print2ld,” but still will not be able to delete it.
Important:
If you protect a destination (logical or actual) so that only certain users
can modify or delete its properties, you might inadvertantly prevent other users
from submitting print jobs to it. To be sure that all of your users can still print to
the destination, add the wildcard character (*) to the ACL as a user with read
permission.
You can also attach ACLs to the operations that you can do on InfoPrint objects.
Allowing you to protect both operations and objects means that InfoPrint Manager
Security provides different levels of security: you can protect all objects by using
ACLs at the operation level or you can protect individual objects with ACLs
applied only to them. Or you can do both: protect all objects by using
operation-level ACLs for some operations and limit access to sub-sets of objects by
using object-level ACLs.
All InfoPrint object names, including security groups and ACL members, are
case-sensitive.
© Copyright InfoPrint Solutions Company 1998, 2010
129
Summary of Contents for InfoPrint Manager for AIX
Page 1: ...InfoPrint Manager for AIX Procedures Version 4 Release 3 G550 1066 04 ...
Page 2: ......
Page 3: ...InfoPrint Manager for AIX Procedures Version 4 Release 3 G550 1066 04 ...
Page 6: ...iv InfoPrint Manager for AIX Procedures ...
Page 8: ...vi InfoPrint Manager for AIX Procedures ...
Page 16: ...2 InfoPrint Manager for AIX Procedures ...
Page 20: ...6 InfoPrint Manager for AIX Procedures ...
Page 58: ...44 InfoPrint Manager for AIX Procedures ...
Page 62: ...48 InfoPrint Manager for AIX Procedures ...
Page 70: ...56 InfoPrint Manager for AIX Procedures ...
Page 96: ...82 InfoPrint Manager for AIX Procedures ...
Page 110: ...96 InfoPrint Manager for AIX Procedures ...
Page 156: ...142 InfoPrint Manager for AIX Procedures ...
Page 170: ...156 InfoPrint Manager for AIX Procedures ...
Page 234: ...220 InfoPrint Manager for AIX Procedures ...
Page 236: ...222 InfoPrint Manager for AIX Procedures ...
Page 256: ...242 InfoPrint Manager for AIX Procedures ...
Page 326: ...312 InfoPrint Manager for AIX Procedures ...
Page 330: ...316 InfoPrint Manager for AIX Procedures ...
Page 331: ...Part 3 Operator and user procedures Copyright InfoPrint Solutions Company 1998 2010 317 ...
Page 332: ...318 InfoPrint Manager for AIX Procedures ...
Page 348: ...334 InfoPrint Manager for AIX Procedures ...
Page 365: ...Part 4 Appendixes Copyright InfoPrint Solutions Company 1998 2010 351 ...
Page 366: ...352 InfoPrint Manager for AIX Procedures ...
Page 370: ...356 InfoPrint Manager for AIX Procedures ...
Page 378: ...364 InfoPrint Manager for AIX Procedures ...
Page 382: ...368 InfoPrint Manager for AIX Procedures ...
Page 406: ...392 InfoPrint Manager for AIX Procedures ...
Page 416: ...402 InfoPrint Manager for AIX Procedures ...
Page 417: ......
Page 418: ...Program Number 5648 F35 Printed in USA G550 1066 04 ...