Administrator's Guide

The HP SAM hierarchical policy has 5 levels:
Global
Role
OU (organizational unit)
Security Group
User
Policy settings assigned to User override policy settings assigned to a Security Group, and so forth up
the list.
Steps:
1. Create or update the policy in the Policies tab. To update an existing policy, click the policy name
hyperlink.
2. Assign the policy:
to a role (User and Roles > Manage resource roles)
to a user, OU, or Security Group (User and Roles > Manage users)
HP SAM always creates the Global Policy. This policy applies to all user connections, unless overridden
by other policies. The default sets the Auto Reconnect box to Off. This ensures multiple users do not
attempt to log in to the same blade at the same time. When a network failure or something similar occurs,
the user may unknowingly have been logged off that resource, depending on the network and AD group
policy settings. HP SAM may allocate that computing resource to another user. If the auto-reconnect
feature is turned on, the original user reconnects to this computing resource, which could potentially
have been allocated to another person. If this is not a concern, then change Auto Reconnect to an
appropriate value.
Table 4-1 Effective Hierarchical Policy Example
Parameter Global Role OU SG1 SG2 User Effective
P1 ON Not Assigned Not Assigned Not Assigned Not Assigned Not Assigned ON
1
P2
ON OFF Not Assigned Not Assigned Not Assigned Not Assigned OFF
P3 ON OFF ON OFF Not Assigned Not Assigned OFF
2
P4
ON/No
Overrides
Allowed
OFF Not Assigned Not Assigned Not Assigned Not Assigned ON
P5 ON/No
Overrides
Allowed
OFF/No
Overrides
Allowed
Not Assigned Not Assigned Not Assigned Not Assigned ON
ENWW HP SAM Administrator Console Tabs 67