ITMS Administrator Group

 View Only
  • 1.  How to issue only Read access to symantec Management console to user

    Posted Jun 04, 2015 04:40 AM

    Hi All, I like to issue a read only access to my management console to group of users. they should have only access to console page not supposed to have option for user to delete or right click menus on any places of console how do we need to perform this activity in Symantec console



  • 2.  RE: How to issue only Read access to symantec Management console to user

    Posted Jun 04, 2015 04:43 AM

    check this

    How to Grant Limited Access to an Item in the Altiris Console using a Security Role

    https://support.symantec.com/en_US/article.HOWTO7925.html

     



  • 3.  RE: How to issue only Read access to symantec Management console to user

    Posted Jun 04, 2015 08:17 AM

    Hi James

    Thanks for you Reply :-)

    When i provide a limited access to user by going to Account management and map Syamantec L1 worker still i am getting the delete option in Filters and more over i seeing right click options are appears with very less number of options .. I do not want User to have right click option anywhere in console

    They should have access to view only for entire console with out having any admin activity like deleting or create a new folders

    I am Using SMP 7.1 Sp2

    Thanks Mark



  • 4.  RE: How to issue only Read access to symantec Management console to user

    Posted Jun 04, 2015 10:12 AM

    Within the Configuration tab tree, there should be a folder called actions or something similar. 

    You need to ensure that the role does not have read to that folder and its items. 



  • 5.  RE: How to issue only Read access to symantec Management console to user

    Posted Jun 04, 2015 10:21 AM

    Hi Sk

    Thanks for your reply

     

    can you please explain this in little detail as i am new to this Altiris 7.6



  • 6.  RE: How to issue only Read access to symantec Management console to user

    Posted Jun 04, 2015 11:40 AM

    If your doing just view with no interaction I would just post a report or a IT Anyaltics page. 

    Their is a lot of overhead to create a view that is only the Manage computers page with no right click actions



  • 7.  RE: How to issue only Read access to symantec Management console to user

    Posted Jun 04, 2015 11:57 AM
    please Thanks SDmayhew . My Requirement is to create a Security role and user to not have any access other than viewing the console Specially i donot want to give them access to right click any menus in console even though if they click they should see only Properties not delete and other options in console


  • 8.  RE: How to issue only Read access to symantec Management console to user

    Broadcom Employee
    Posted Jun 04, 2015 12:48 PM

    Did you check what privileges are enabled for yours "Role"?

    Privileges.jpg



  • 9.  RE: How to issue only Read access to symantec Management console to user

    Posted Jun 04, 2015 04:15 PM
    Hi I am seeing the same for the role which i have created but still user is having access to Filter and able to have Delete options and other Right click Options


  • 10.  RE: How to issue only Read access to symantec Management console to user

    Broadcom Employee
    Posted Jun 05, 2015 09:35 AM

    On my server, if I'll enable/disable "Delete" Right Click Menu action privilege, then account from this role doesn't have "Delete" action for computers in opened "Filter".

    Account_Delete.jpg

     

    Make sure that your account isn't added in any other "Security Role", which has this "Delete" right click menu privilege enabled.

    Open "Accounts" page -> click on your Account name and then click "Member Of" tab -> check what Roles are assigned to this account

    Also ensure that "Role" which you are using, isn't assigned to another "Role" which has this "Delete" privilege enabled.

    Open "Roles" page -> click on your "Role" name -> open "Member Of" tab -> check whether there are another security roles assigned (except "Everyone" role - this role is assigned for any Role by design).

    Thanks,

    IP.