NET/MASTER Management Services (MS) System Management Guide

Using UMS to Manage User Privileges
Managing User Access and Privileges
4–30 115414 NonStop NET/MASTER MS System Management Guide
Password Expire Field The SYSPARMS PWEXPIRE command specifies the number of days for which a user’s
password is valid. Use the Password Expire field to specify whether the password for
this user ID expires at the end of the aging interval established by SYSPARMS
PWEXPIRE command.
Terminals to which User
will be restricted Field
You can restrict use of a specific user ID to up to 10 terminals. For example, by
restricting users to specific terminals, you can secure use of specific user IDs to
terminals in secured operations rooms. Use the fields numbered 1 through 10 under
the Terminals to which User will be restricted text on the UMS : User Attributes panel
to specify the names of terminals to which the user ID is restricted.
Dynamic Logon Field You can control access to NonStop NET/MASTER MS from the TACL prompt. Most
users log on to NonStop NET/MASTER MS from a dedicated terminal, as described in
Section 5, “Customizing the Operations Environment.” Some users, such as the
system manager, need to be able to log on from a TACL prompt. Use the Dynamic
Logon field on the UMS : User Attributes panel to enable or disable the ability to use
the NNM program. The NNM program, run from the TACL prompt, causes the
NonStop NET/MASTER MS logon panel to appear. See Section 2, “Starting NonStop
NET/MASTER MS,” for additional information about the NNM program.
Using UMS to Manage
User Privileges
If you have UMS management privileges, you can use the UMS management
capabilities to grant or deny use of many features.
Authority Level Field NonStop NET/MASTER MS uses the authority level setting to determine whether the
user ID can issue a specific command. Authority levels govern access to both NonStop
NET/MASTER MS commands and the commands of external utilities accessed from
within NonStop NET/MASTER MS.
When a user invokes a command, the command authority level in the Authority Level
field in the user’s user ID definition record is compared to the command’s command
authority level. If the user’s command authority level is equal to or greater than the
command’s command authority level, the command is processed: otherwise, NonStop
NET/MASTER MS rejects the attempt to invoke the command. For a listing of the
default command authority levels, refer to the NonStop NET/MASTER MS Command
Reference Manual.
The default authority levels of NonStop NET/MASTER MS and external utility
commands follow the guidelines specified in Table 4-7.