Show TOC 


Manage Delegated Administrators' Granted Rights

You can manage the rights granted to an administrator or an administrator group through the Configure Grants link on the account's toolbar.

When you click Configure Grants,  the Content pane displays the directly assigned grants and inherited grants. You can grant additional access control rights, edit rights or delete rights for the administrator account or administrator group account.

To add  Access Control Entries (ACE)
  1. Select the admin account or admin group to be modified. Click Configure Grants.

  2. To add a right, click Add. The Add ACE dialog opens with the administrator account name displayed in the Grantee Name field.  

  3. Select the target type from the list.

  4. Enter the target's name. The name must be the same as configured in ZCS. For example, domain_name@example.com.

  5. Select the type of right to grant, either System Defined Right or an individual Attribute Right.

If you select System Defined Right, you must enter the name of the right associated with that target.  For a list of rights, see the Rights folder in the Overview Pane Configuration section.

If you select Attribute Right, you must select whether the right is read-only or write. The attribute right target type associated with the target type you selected are listed.

  1. In the Right Name field, enter the right name. Typing in the field displays a list of rights associated with the target type selected.

  2. Select whether this is a positive or negative right. When you select Is Positive Right, if this administrator can also grant the same right to other administrators, check Can grant the right to other admins.

  3. Click Add and More to add this right and open the Add ACE window again to add another right. Click Add and Finish to add this right and finish the configuration.

When an ACE is created, the ACE includes the following information:

To edit ACE
  1. Select the grantee (admin account name) to edit and click Edit.

  2. Make your changes and click Edit and Finish.

To delete the ACL
  1. Select the grantee (admin account name) to delete and click Delete.  

  2. An Informational dialog opens to confirm the deletion. Click Yes.  

 

 

-------------------------------------------------------------------------------------------------------
Copyright @ 2005-2017 Synacor, Inc. All rights reserved. "Zimbra" is a registered trademark of Synacor, Inc.