System information
FCD 901 48
Issue R2A, 07.2009
XMP1 Release 5.5 System Description
User Administration
Page 6-20 Proprietary Information Aastra
6.2.2.7 User Administration
SOX users are allocated to certain Windows User Groups depending on
the authorization levels provided for them in the SOX. These Windows User
Groups are used by the SOX Server and SQL Database Server to carry out
the authorization check.
These Windows User Groups are entered in the SQL Database Server as
SQL Server Logons. For each SOX Database, database users must be
defined. These SOX Database Users will then be assigned database roles.
In the SOX Server standard configuration, the authorization check is not
provided, i.e. each user has all rights.
However, it is possible to configure the Windows Authorization Manager
(AzMan) as an option. In this case, an authorization check controlling
access to the SOX Server will be performed. In the Windows Authorization
Manager (AzMan), the Windows User Groups must then also be assigned
SOX roles.
Note: The Windows Authentication function is used to
authenticate the SOX users.
Note: The Remote Desktop Session enables a user of an
external PC (without SOX Client Installation) to start a SOX Client
on a Server PC. The user accessing the Server PC via a Remote
Desktop Session must have been entered in Windows as
"Remote Desktop User".
Windows User Groups
Four Windows User Groups are pre-configured on the Server PC.
Depending on their SOX authorizations, the Windows Users are allocated
to these Windows User Groups.
Tab. 6.B: Allocation of Windows User Groups to SOX authorizations
WINDOWS USER GROUP USER RIGHTS IN THIS GROUP
SoxReadOnly The user has read access to the Database.
SoxAlarmAcknowledge The user can also acknowledge alarms.
SoxAlarmOperator
The user can also delete alarms and performance
data.
SoxConfigurator
The user can also enter and change configuration
data.