HP System Dictionary/XL General Reference Manual Vol 1 (32256-90004)

5- 47
Scope Restrictions
The following restrictions apply to scopes.
Only the DA scope or a scope with secure capability can create a new scope.
When a scope creates a new scope, it becomes the owner of the new scope.
A scope cannot assign a scope right that it does not have itself.
Only the DA scope or the owner of a scope can modify, delete, or retrieve information about that scope.
Note, however, that a scope can change its own password, and retrieve information about itself.
When a scope is deleted, an existing scope may be specified to become the new owner of everything that
is owned by the scope to be deleted. The new owner scope must, however, have at least the same scope
rights as the scope it replaces. If a scope is not specified, the current scope will become the new owner,
but only if it has at least the same scope rights as the scope it replaces.
Only the DA scope can retrieve all the scopes in the dictionary, but a scope with secure capability can
retrieve all of the scopes it owns.
Scope Password
Each scope in System Dictionary has an associated password. A password is necessary to gain access to a
particular scope. Scope passwords are case sensitive.
Using Scopes
System Dictionary allows five different operations to be performed directly on scopes. There are also a
number of dictionary operations that use scopes, these are covered further on in this chapter. The five
operations are:
Creating scopes.
Deleting scopes.
Modifying scopes (can change its own password or that of another scope it owns, or change that scope's
name, scope rights, or scope owner).
Retrieving information about a specified scope.
Retrieving a list of all the scopes in the dictionary, or all that
the scope owns.
Structure Security
The following groups of restrictions are placed by System Dictionary on the operations associated with the
dictionary structure. Each group contains the restrictions for a single component type in the dictionary
structure. Although the groups contain similar restrictions, they are listed separately for ease of use.
Entity Type Restrictions
System Dictionary provides the following security for entity types:
Only the DA scope or a scope with extend capability is allowed to create new entity types.
When a scope creates a new entity type, it becomes the owner of that entity type.
Only the DA scope or the owner scope can delete or rename an entity type, or change its owner scope.
Core set entity types are owned by the core set and can never be deleted or modified (exception: core set
entity type external names may be modified by the DA scope.)