HP Web Jetadmin - Security and HP Web Jetadmin

6
Figure 5User/group role assignment
From the Assign User Role wizard (see
Figure 5), device groups and users are
specified when the role selected has a group
restriction type. When a role is selected that
does not have this restriction type, the Groups
area remains gray and no groups can be
selected.
Using roles in restricted groups can be
valuable, as in the case of regionalized
helpdesk operations. Consider this: The north
regional helpdesk is staffed by five people. All
of these people are given permissions to the
appropriate application features and are given
HP Web Jetadmin feature access to the devices
within their region. Similarly, the helpdesk staff
in the south region is staffed by eight people who have HP Web Jetadmin feature access on devices
within their region. In both cases, the helpdesk has role assignment on the same role, but for the
appropriate group containing the devices in its region. The features needed to perform helpdesk tasks
are specified by the role, and the device groups are selected during the role assignment.
User/role diagnostics
Users can be assigned to multiple roles. A common scenario might be: A small helpdesk is staffed
with 15 people. All of them are assigned to the HelpDesk role, which gives them the ability to
troubleshoot devices using Status, Detailed Info, Troubleshooting, and Capabilities features. In order
to keep device information up-to-date, two of the senior helpdesk staff are given additional access to
the Configuration, Firmware, and Discovery features. In addition to the HelpDesk role, they have been
given an assignment into another role named ExtendedHelp. These two users now have access to
additional features beyond those needed by normal helpdesk staff. HP Web Jetadmin uses least
restrictive permissions in its user/roles feature. Users can access any feature that is enabled in a role
for which a user has an assignment.
Diagnostics can be used to observe
the privileges granted to any user that
has a user/role assignment (see
Figure 6). To access Diagnostics go to
Application Management > User
Security > Diagnostics from within the
navigation tree. To access the
diagnostics feature, simply add the User
name and Domain detail and then click
View Roles.
Figure 6—User/role diagnostics