SANGFOR IAM v2.1 User Manual
189
[Use Parent Group Policy]: Check this option and policy(policies) is inhered from and exactly the
same with that (those) of its parent group, and you cannot do any operation on the policy(policies),
such as adding, moving up/down, or deleting policy. Uncheck this option, and the group can
associate with access control policy of its own.
[Select All/Inverse]: Click it to select the needed policies.
<Add Policy>: Click this button and select a policy to add it to the policy list. The configuration
page is as shown below:
Select a needed policy and click <Add> to add the selected access control policy into the policy
list. As to the configuration of the access control policy, please refer to Section 7.1 Access Control
<Move Up>, <Move Down>: Click it to move up or move down the selected access control policy
and adjust the priority of the policies to be matched.
<Delete>: Click this button to delete the selected access control policy (policies).
[Inherit]: Check it and this access control policy will be inherited by all of its subgroups and the
users in the subgroups. The user(s) of this group also is forced to inherit this policy, however,
different from the subgroup(s) of the group, this access control policy of the user(s) can be moved
and deleted, while the access control policy of its subgroup cannot be moved or deleted. Among
all the policies of a subgroup, the inherited policies have the higher priority over the others.