Top
Systemwalker Operation Manager  Installation Guide
FUJITSU Software

2.3 Security Definitions

This section describes the security functions provided by Systemwalker Operation Manager. Enter the definitions for these functions when it is necessary to improve the security of a system.

Extended User Management function [UNIX]

This function sets up user IDs that are separate from the user IDs registered with the operating system, and manages the users who can access Systemwalker Operation Manager.

See "2.5.3 Defining Users (When using Extended User Management Function) [UNIX]" for details.

Systemwalker authentication repository

A Systemwalker authentication repository centralizes user management for Systemwalker products that are associated with the Systemwalker authentication repository. Centralizing user management reduces the management load for system administrators and also makes it possible to operate the entire system more securely. A Single Sign-On function is also possible with users in the Systemwalker authentication repository, and operations staff can securely use multiple Systemwalker products after logging in just once. Refer to "2.4.1 Definitions for Using a Systemwalker Authentication Repository" and "2.5.4 Defining Users (When Using a Systemwalker Authentication Repository)" for details.

Access control

This function controls access to projects.

Refer to "Setting up Access Permissions for Projects" in the Systemwalker Operation Manager User's Guide for details on the definition method. See "Appendix E Usage Restrictions Based on Access Rights" for a list of the menu items, operations, commands and APIs that can be used with different access rights.

It is also possible to restrict the users who can access Systemwalker Operation Manager directories and files.

See "2.5.5 Define User Restrictions" for details on the definition.

Restricting execution users

This function registers the users who are allowed to execute jobs.

[Windows]

Specify Execute jobs under the respective job owner's authority in the Options sheet of the Define Operating Information window. Then, click the Define Job Owner's Information button to display the Define Job Owner's Information window and register only those users who are permitted to execute jobs.

See "2.9.1 Defining the System Operating Information" and "2.9.3 Defining the Job Owner Information [Windows]" for details.

[UNIX]

Register the users who are permitted to execute jobs in the user control list for job execution. See "2.9.4 Defining the User Control List for Job Execution [UNIX]" for details on how to define this function.

Audit log output

This function outputs a record of the operations performed on Systemwalker Operation Manager to an audit log file.

See "2.5.6 Defining Audit Log Output" for details on how to define this function.