354Chapter 8 Managing system users and groups

User rights and group membership

There are three groups of system users who routinely access the system for configuration and management:

admin (administrator)

certadmin (certificate administrator)

oper (operator)

Note: There are two additional types of users with specialized

functions: boot and root. For more information, see “Accessing the Nortel SNAS 4050 cluster” on page 775.

Group membership dictates user rights, as shown in Table 68 on page 354. When a user is a member of more than one group, user rights accumulate. The admin user, who by default is a member of all three groups, therefore has the same user rights as granted to members in the certadmin and oper group, in addition to the specific user rights granted by the admin group membership. The most permissive user rights become the effective user rights when a user is a member of more than one group. For more information about default user groups and related access levels, see “Accessing the Nortel SNAS 4050 cluster” on page 775.

Table 68 Group membership and user rights

 

 

 

 

 

Rights

 

 

Group

User

 

 

 

 

 

 

System

Group

Password

Account

account

 

 

 

 

 

 

 

 

Add user

Delete user

Add user

Delete user

Change own

Change others

 

 

 

 

 

 

 

 

admin

admin

Yes

Yes

Yes, to own

Yes

Yes

Yes, if Admin is

 

 

 

 

group

 

 

a member of

 

 

 

 

 

 

 

the other user’s

 

 

 

 

 

 

 

first group

 

 

 

 

 

 

 

 

certadmin

admin

No

No

Yes, to own

No

Yes

No

 

 

 

 

group

 

 

 

 

 

 

 

 

 

 

 

oper

oper

No

No

Yes, to own

No

Yes

No

 

admin

 

 

group

 

 

 

 

 

 

 

 

 

 

 

320818-A

Page 354
Image 354
Nortel Networks 4050 User rights and group membership, Managing system users and groups, Group membership and user rights