NET/MASTER Management Services (MS) System Management Guide

4 Managing User Access and
Privileges
115414 NonStop NET/MASTER MS System Management Guide 4–1
This section describes how to use management features of User ID Management
Services (UMS) to define the universe of users who can access NonStop
NET/MASTER Management Services (MS). It also describes how to grant and
manage privileges of logged-on users.
Note This section focuses on management of the access and privileges of specific users. A discussion of
system-wide security administration features appears in Section 5, “Customizing the Operations
Environment,” and Section 6, “Managing Access to External Utilities and Applications.”
You control user ID access and privileges by entering and changing information in a
user ID definition record. You can add, modify, and delete user ID definition records
if you have UMS management privileges. (The security administrator’s user ID
(SCTYADMN) created in Section 2, “Starting NonStop NET/MASTER MS,” has UMS
management privileges.) Specifically, your ability to change information in the user
ID definition record enables you to perform such tasks as the following:
Specify an initial password and password expiration date for the user (UMS : User
Details panel)
Control whether automatic, system-wide terminal timeout actions apply to a user
(UMS : User Details panel)
Control use of Guardian user IDs (GUIDs), NonStop NET/MASTER MS
commands, and external utilities (UMS : User Details and UMS : User Attributes
panels)
Restrict the terminals at which a user can log on to NonStop NET/MASTER MS
(UMS : User Attributes panel)
Create a user NCL environment that consists of a user procedure library, a user
panel library, and a user NCL object file (UMS : User Attributes panel)
Replace the main menu NCL procedure that Tandem distributes with an
alternative main menu NCL procedure (UMS : User Attributes panel)
Grant user privileges, such as use of UMS management features, Operator Control
Services (OCS), System Support Services, and Edit Services (UMS : Access
Authorities panel)
Control whether a user can log on to or from a remote node (UMS : Access
Authorities panel)
Control the kinds of messages that are sent to a user’s OCS window (UMS : OCS
Details panel)
This section also discusses these topics:
Contents of a user ID definition record
Adding and maintaining user ID definition records
Quick ways to create user ID definition records