ADSM-L

Re: Privilege Class for Backup/Archive Web Client

1999-06-17 12:39:36
Subject: Re: Privilege Class for Backup/Archive Web Client
From: Rob Edwards <rob AT US.IBM DOT COM>
Date: Thu, 17 Jun 1999 12:39:36 -0400
Michael,

If I understand your question correctly, you should be able to do this by
registering an ADSM admin id and granting it one of the CLIENT
authorities: OWNER or ACCESS over the node(s) you want the user
to be allowed restore access to. See the GRANT AUTHORITY command
for the details.

N.B.: OWNER authority is intended for those people who own the data, or
                             have a right to physically gain access to the data.
          ACCESS authority is intended for those people who you want to allow
                             the ability to backup/restore data on a person's
behalf, but
                             don't not want to have the ability to physically
gain access
                             to the data. e.g.: Help desk people.

The *current* web client does not doing anything different if you have owner
or access authority, but future releases will. For example, certain functions,
like "User Access List" will be restricted to user's with OWNER authority.

Hope this helps.

Rob Edwards
ADSM Development
(Internet: rob AT us.ibm DOT com)



Michael Carter <MICC AT DYNEGY DOT COM> on 06/17/99 10:57:02 AM

Please respond to "ADSM: Dist Stor Manager" <ADSM-L AT VM.MARIST DOT EDU>

To:   ADSM-L AT VM.MARIST DOT EDU
cc:    (bcc: Rob Edwards/Endicott/IBM)
Subject:  Privilege Class for Backup/Archive Web Client





I am setting up an ID for the use of doing restores using the Backup/Archive Web
Client.  Doing restores will be the only involvement with ADSM that this ID is
for.  My question is this: Is there another way to setup an ID to be used only
with the Web Client (the person doing restores will not have access to the
server to use the command line), other than granting authority to the ID with
classes=policy?  We only have one domain that this ID will be in, but many
Novell servers.  I would really prefer that this ID not have all the rights that
the policy privilege gives.  Any ideas will be appreciated.



     Michael A. Carter
     Sprint Paranet
     On Loan to Dynegy
     Houston, TX
<Prev in Thread] Current Thread [Next in Thread>