Neoview User Management and Security Administration Guide (R2.5)

NOTE: A user in the role ROLE.SECMGR can also change the password of the SUPER.SUPER
role, as described in “Changing a Platform Role Password” (page 106).
A user who can change the password for a role can also change the password-expiration attributes,
but HP recommends against this practice. By default, the passwords of predefined roles do not
expire.
Whether a user ever needs to enter the role password in order to log on is determined by the
security policy, as described in “Viewing and Updating the Power Role Management Policies”
(page 48).
Table 5-2 Changing a Database Role Password
CommentRangeInitial ValueField Name (HPDM)Parameter Name (NCI)
The only database
roles for which
ROLE.MGR can
change the password
and expiration
attributes are
ROLE.DBA and
ROLE.MGR. Only a
ROLE.SECMGR user
can change the
password of
ROLE.SECMGR.
ROLE.name
NARole NameROLE
Maximum of 53
characters if you use
1024-bit encryption,
64 characters if you
use 2048-bit
encryption
NANew PasswordNEW-PASSWORD
Required or optional,
depending on the
security policy.
NAOld PasswordOLD-PASSWORD
Number of days from
password change to
expiration.
IntegerIn order of
descending
precedence:
Previously specified
value
Value specified in
security policy
0 (no expiration)
Expires Every...DaysEXPIRY-DAYS
Password expiration
date. NCI requires
alphabetic characters
to represent the
month. HPDM uses
two-digit numbers.
MMM DD YYYY” in
NCI
MM-DD-YYYY in
HPDM
Current date plus
EXPIRY-DAYS or, if
EXPIRY-DAYS is 0,
no expiration
Expiry DateEXPIRY-DATE
For more information about the NCI ALTER ROLE command, see ALTER ROLE Command
(platform roles, database roles)” (page 110). For a description of the Change Role Password dialog
and how to navigate to it, see the HPDM Online Help.
Deleting a Role
A user in the role ROLE.MGR may delete a database role by using either the NCI DROP ROLE
command or the Delete button on the HPDM Roles display.
98 User and Role Management