Storage Resource Manager Enterprise Edition Installation Guide

Storage Resource Manager Enterprise Edition 71
7
Security
SRM security is designed to manage user access to SRM. The default settings
established during installation provide a basic configuration that you can modify to
meet the specific needs of your environment.
How SRM Determines User Access
There are two kinds of SRM user access:
Privileged access provides the user access to the SRM Options pages for SRM
administration.
Nonprivileged access provides the user with permission to view SRM data,
but does not give access to the SRM Options pages.
During SRM installation, directory and file access permissions are set to manage these
levels of SRM user access. Everyone has non-privileged access by default.
IMPORTANT: The default installation applies Full permissions to everyone at the root level. If
you have not made any changes to this default, Everyone has Full access to your SRM
installation. Alter this setting and add Full permissions to the SRMUser group to ensure limited
access to your SRM data.
SRM Windows NT Security Groups
During SRM Server installation, Setup creates but does not populate two local
Windows NT security groups: SRMAdmin and SRMUser. These groups are not
created during SRM Agent installations. These groups are provided for your
convenience.
For easy user access management, organize your SRM users and user groups in this
way:
Add all users who need administrative access to SRM to the SRMAdmin group.
All others will have non-administrative access to SRM.
Add all users who need non-administrative access to SRM to the SRMUser group.