Job Management Partner 1/Automatic Job Management System 3 - Web Operation Assistant Description, Operator's Guide and Reference
- Organization of this section
- (1) Setting up user authentication for the list view for acquired status information
- (2) Setting up user authentication to perform operations from the list view
(1) Setting up user authentication for the list view for acquired status information
When obtaining status information, JP1/AJS3 - Web Operation Assistant first checks the record access permissions of the JP1 user logged on, and only obtains the status when such permissions exist.
(a) How to set up user authentication
To validate the access permissions for JP1 users, perform one of the following:
- Place JP1/AJS3 - Web Operation Assistant and any instances of JP1/AJS3 - Manager or JP1/AJS2 - Manager to be monitored within the same authentication domain (set JP1/Base on each machine to use the same authentication server).
- On all authentication servers, use the same settings for JP1 resource groups and permissions levels for the JP1 user who wishes to log on to JP1/AJS3 - Web Operation Assistant.
The following figure shows an example of correct user authentication:
Figure 3-3 An example of correct user authentication
(b) An example of incorrect user authentication
When the authentication domains differ between JP1/AJS3 - Web Operation Assistant and the instance of JP1/AJS3 - Manager or JP1/AJS2 - Manager to be monitored, jobs and jobnets that could not be monitored originally may end up being monitored, depending on the settings for the authentication server. The following figure shows an example of incorrect user authentication:
Figure 3-4 An example of incorrect user authentication
Consider a case in which permissions for a certain JP1 user A are as follows:
- Permission to view the JP1 resource group groupA, on authentication server A.
- No permissions for groupA on authentication server B.
In this case, JP1 user A cannot view units belonging to groupA on host2, but since JP1/AJS3 - Web Operation Assistant performs an authentication check on authentication server A, the user can view these units when using JP1/AJS3 - Web Operation Assistant.
To correct this, perform the following:
- Unify the settings for JP1 resource groups and permissions levels for JP1 users on authentication server A and authentication server B.
- Change the authentication server for host2 to authentication server A, or change the authentication server for host1 and host3 to authentication server B.
(2) Setting up user authentication to perform operations from the list view
Click an operation button to execute a command, using the permissions of the JP1 user who has logged on. Make sure that JP1 users performing operations from the list view have the appropriate operation permissions. When a user clicks a hyperlinked unit name to start JP1/AJS3 - View or JP1/AJS2 - View, the user will be logged on to the JP1/AJS3 - Manager or JP1/AJS2 - Manager on which the selected unit exists, using the user's JP1 user account. If the logon succeeds, JP1/AJS3 - View or JP1/AJS2 - View will start without the usual logon procedures. If the logon fails, the Login window for JP1/AJS3 - View or JP1/AJS2 - View will appear.
Copyright (C) 2010, Hitachi, Ltd.
Copyright (C) 2010, Hitachi Software Engineering Co., Ltd.