Managing Sheer DNA Security
Cisco Systems, Inc. Page 135
10 Managing Sheer DNA Security
About this chapter:
This chapter describes how Sheer DNA implements a two-dimensional
security engine combining a role-based security mechanism with scopes
(groups of Network Elements) that are granted to users. In addition, it
describes managing users in the Sheer DNA platform, including, defining
users and passwords.
Security Overview, page 135, describes the security related concepts and
terms used in the Sheer DNA Manage application and throughout this guide.
Customizing Security Flow, page 139, describes the steps required to
customize security.
Creating Scopes, page 140, describes how to group a collection of managed
Network Elements together in Sheer DNA Manage. In addition, it describes
how to edit the Network Elements included in a scope, view the scope’s
properties and how to delete a scope.
Creating New Sheer DNA User Accounts, page 143, describes how to
create permitted users for the current client station.
Granting or Editing a User’s Rights, page 146, describes how to manage
general user account information and the list of scopes assigned to the user as
well as the security access roles per scope and assign maps to a user.
Deleting a Sheer DNA User Account, page 152, describes how to delete a
Sheer DNA user account from the list of users.
Changing a User’s Password, page 152, describes how the administrator
can redefine the user’s password. In addition, it describes how the current
user can change the user password.

10.1 Security Overview

This section describes the security related concepts and terms used in the
Sheer DNA Manage application and throughout this guide.

10.1.1 Scopes

Sheer DNA Manage enables the administrator to group a collection of
managed Network Elements together in order to enable the user to view
and/or manage the NEs based on the user’s role or permission.