You can distribute Operation Manager user information set using the Extended User Management function and the access privileges to projects to a different Systemwalker Operation Manager server using the Policy Data Extraction/Distribution functions.
This section describes how to extract or distribute the policy data using the Extended User Management function.
Note
If the enable or disable setup of the Extended User Management function differs between the policy data extraction source and destination, the Operation Manager user is distributed to the destination but function enable or disable setup is not changed at the destination.
You cannot distribute policy data of "Schedule DB/schedule pattern" extracted in version V11.0 or earlier to an environment where the Extended User Management function is enabled. If you need to distribute it, first disable the Extended User Management function by issuing the mpsetusermode command. For the mpsetusermode command details, refer to the Systemwalker Operation Manager Reference Guide.
Definition procedure
Before extracting or distributing the policy data, check the following.
The system administrator of the extraction source or an OS user associated with the Operation Manager user must be registered in the distribution destination as well. If not, you fail policy data distribution. Before distributing the policy, check that they are registered in the distribution destination server. If not, register them. The OS user privileges in both of the extraction source and distribution destination must be the same.
In the extraction source server, check the policy distribution method of Operation Manager user information. Change it if necessary.
Use the mpupolmode command to display the policy distribution methods.
Use the mpsetupolmode command to change the policy distribution methods. By default, "keep" is set in which mode Operation Manager user information registered in the distribution destination server is not deleted. To delete the user information before distributing the policy, specify "clear" and execute the command.
For the command details, refer to the Systemwalker Operation Manager Reference Guide.
Extract policy data.
To extract/distribute Operation Manager user information registered using the Extended User Management function, select Extract Policy window >> Registration Information sheet, and then Operation Manager user.
To extract/distribute Operation Manager user information registered using the Extended User Management function or the access privileges information set for projects, select Extract Policy window >> Registration Information sheet, Operation Manager user and then Schedule DB/schedule pattern.
For more information on how to extract the policy data, see "2.14.1 Extracting the Policy Data".
Distribute the policy data.
Operation Manager user information is distributed regardless of whether the Extended User Management function is enabled or disabled in the policy data extraction source and distribution destination servers.
If you set the policy distribution method to "keep" in Step 2 and the Operation Manager user information already exists in the distribution destination, it is merged. If user information with the same name exists, it is overwritten by the extraction source information.
If you set the policy distribution method to "clear" in Step 2, the existing Operation Manager user information in distribution destination server is deleted, then the Operation Manager user information in extraction source server is distributed.
For more information on how to distribute the policy data, see "2.14.2 Distributing the Policy Data ".
Change the enabled or disabled status of the Extended User Management function if necessary
Even if the policy data is distributed, the enabled or disabled status of the Extended User Management function is not changed. Change the enabled or disabled status of this function on the destination server if necessary.
Notes on access privileges information distribution
Even if you extract and distribute schedule DB/schedule pattern alone when the Extended User Management function is not enabled in the distribution destination server, the access privileges information of the Operation Manager user set for projects using the Extended User Management function is not distributed. When distributing Operation Manager user's access privileges information by selecting only Schedule DB/schedule pattern, enable the Extended User Management function in the distribution destination server before distributing it.
Regardless of whether the Extended User Management function is enabled or disabled, the access privileges information of a user who does not exist in the distribution destination server, is not set in the destination server even if you distribute it. In this case, the following message appears in SYSLOG.
Access control information was restored incompletely. For details, see %1 |
%1 : File name holding description of the error cause
When you see this message, create a user in the distribution destination server, and distribute the policy again.
If you distribute the access privileges information for a project which exists in the policy data extraction source server, but not in the policy data distribution destination server, by selecting Schedule DB/schedule pattern, the distribution destination server will have the following access privileges.;
When the Extended User Management function is enabled on the extraction source server and disabled on the distribution destination server (if OS-based user management or a Systemwalker authentication repository is being used)
The system administrator will have the update right.
The project owner will have the update right for his/her own project.
If the Extended User Management function is disabled on the source (if OS-based user management or a Systemwalker authentication repository is being used) and enabled on the destination
The Operation Manager user with the administrator privileges will have the update right.