HP Systems Insight Manager 7.2 Technical Reference Guide
Users and authorizations
NOTE: Users that have been added to the Central Management Server (CMS) cannot view or
manage systems until authorizations have been configured for them.
NOTE: Command line tools provided by HP-UX and Linux (such as ls and df) are run as root
by default. For security reasons, you might want them to run as a specific user to avoid inadvertently
allowing unauthorized access to a user.
HP SIM enables you to configure authorizations for specific users or user groups. Authorizations
give the user access to view and manage systems. Each authorization specifies a user or user
group, a toolbox, and a system or system group. The specific set of tools that can be run on a
system that is specified in the assigned toolbox.
You must plan which systems each user will manage and which specific set of tools each user is
authorized to execute on managed systems. A user with no toolbox authorizations on a particular
system cannot view or manage that system.
Authorizations are cumulative. If a user is authorized for Toolbox1 and Toolbox2 on the same
system, the user is authorized for all tools in both Toolbox1 and Toolbox2 on that system. Similarly,
a user authorized for the All Tools toolbox on a system requires no other toolbox authorizations
on that system because the All Tools toolbox always includes all tools.
See the following guidelines for setting up user names and authorizations in the following sections:
• Creating new users
• Creating new user groups
• Creating new toolboxes
• Creating new authorizations
212 Operations