7.1 Administrator Rights

The Administrator Rights dialog box lets you allow the selected administrator to grant rights to other administrators and to create or delete administrator accounts for your Management Zone.

NOTE:

  • To create, edit, and delete administrator defined fields (ADFs), administrators require License Management rights.

  • For Contract ADFs, administrators require Contract Management rights.

  • For the Web Applications, administrators require both the License Management rights and Modify Settings rights.

  • For the License Information Sources, administrators require the Credential rights along with the ZAM Zone rights.

The following rights are available:

RIGHT

OPERATIONS CONTROLLED BY THE RIGHT

NOTES

Grant Rights

  • Assign rights to an administrator or administrator group

  • Remove rights from an administrator or administrator group

  • Assign roles to an administrator or administrator group

  • Remove roles from an administrator or administrator group

To grant any object rights to other administrators, an administrator must have the Grant Rights and the rights for that object. For example, to grant bundle rights to other administrators, an administrator must have both the Grant Rights and the Bundle Rights.

Create/Delete

  • Create an administrator

  • Rename an administrator

  • Set/reset an administrator’s password

  • Delete an administrator

 

Create/Delete Groups

  • Create an administrator group

  • Delete an administrator group

 

Modify Groups

  • Add administrators to a group

  • Remove administrators from a group

 

View Audit Log

  • View an administrator’s Audit tab and the events logged to that tab

  • View an administrator group’s Audit tab and the events logged to that tab

This right does not allow the administrator to view event details. To view event details, the administrator must have the View Audit Event right.

View Audit Events

  • View an administrator’s Audit tab, the events logged to that tab, and the details for the events

  • View an administrator group’s Audit tab, the events logged to that tab, and the details for the events

Setting the View Audit Events right to Allow forces the View Audit Log right to Allow.

Modify MFA Setting

Allow or deny the administrator rights to modify Multi-Factor Authentication setting.

 

Modify MFA Setting For Groups

Allow or deny the administrator rights to modify Multi-Factor Authentication setting in the group.