This topic describes the areas and options of the Privileges window in the Administration Console.
To open Privileges, go to Administration Console > Users, Groups, Roles and Privileges > Privileges.
The Privileges toolbar includes the following options:
|Switch to the Users view to define privileges by user or group.
|Switch to the Roles view to define privileges by role.
|Switch to the Privileges view to define privileges either by user or by role.
Privileges navigation area
The Privileges navigation pane lists the privileges in the base database. The information displayed in the navigation pane depends on the option selected on the toolbar.
In the navigation pane, you can:
In the Privileges view, select the category of privileges to view, Administration Privileges or Product Level Privileges.
Expand the icons in the navigation tree to view the privileges for a particular object class or administrative function.
Select a privilege to display its details and privilege rules in the content pane.
In the Users view, select for whom you want to view the privileges: All Active Users, All Groups, Auto Registered, or Dormant Users.
In the Users view, select a user or group to display its privilege rule assignments in the content pane.
In the Roles view, select a role to display its associated privilege rule assignments in the content pane.
Privileges content area
The Privileges content pane displays information about the object selected in the navigation pane.
When you select a user, user group, or role in the navigation pane, the content pane displays the current assignments for each object class, and the administration area for the selected user, group, or role. For each object class, you can modify details for the assigned privilege rules.
When you select a privilege, the content pane displays the following sections:
|Displays the name, category and description of the privilege.
|General Grant Rules
Displays the rules that apply at a general level and are not applicable to specific users or groups.
You can enable or disable general grant rules for the privilege.
|Explicit Grant/Deny Rules
Displays the rules that apply at a specific user/group level for this privilege.
You can grant this privilege rule to specific users or groups, and remove the selected privilege rule for the user or group.
|Other Grant Rules
Displays the rules for this privilege that apply to roles.
You can add or remove an assignment for this privilege rule.