Добавил:
Upload Опубликованный материал нарушает ваши авторские права? Сообщите нам.
Вуз: Предмет: Файл:
WCBasicAdminGuide.pdf
Скачиваний:
71
Добавлен:
23.03.2015
Размер:
3.31 Mб
Скачать

The policies that are in effect in a context are determined by the policies set in the domains that are in the current context, as well as those set in the parent domains.

For details, see Administering Domains and Policies on page 85 .

Installed Site Context Policies

The site context policies that are set consist of the domain-based access control rules and one indexing rule. No notification rules are set in the site context domains, and no policy rules are set in the site context /SessionIterationDomain domain.

Note

Your solution may vary from the following description, as the name of the Administrators group, and the names of the some initial domains are configurable from the wt.properties.xconf file prior to the installation.

The following sections describe the rules that are set in the site context.

Access Control Rules for / (Root) Domain

The following domain-based access control rules are set when the data is loaded during the installation. The rules are in the site context / (root) domain for all life cycle states. Permissions granted are indicated with a plus sign (+), permissions denied are indicated with a minus sign (-), and permissions absolutely denied are indicated with an exclamation mark (!).

For more information, see the Policy Administration help.

Note

These rules ensure that users can operate within the Windchill solution and should not be changed without fully understanding the reason for the change.

Object Type

Participant

Permissions

Comment

AccessPolicyRule

ALL

+Read

Allows

 

 

 

organization and

 

 

 

application

 

 

 

context

 

 

 

administrators to

 

 

 

see inherited

 

ALL

 

access rules.

AdministrativeDomain

+Read

Allows all users

68

PTC Windchill® Basic Administration Guide

Object Type

Participant

Permissions

Comment

 

ALL

 

to view domains.

DeliverableDefinition

+Read and +Create

Allows all users

 

 

 

to create and

 

 

 

read deliverable

 

ALL

 

definitions.

EPMDocConfigSpec

+Full Control (All)

Allows all users

 

 

 

to perform

 

 

 

configuration

 

 

 

management of

 

 

 

business objects

 

 

 

within their

 

 

 

workspace when

 

 

 

using Creo

 

 

 

Parametric or

 

 

 

other workgroup

 

 

 

managers.

ExchangeContainer

ALL

+Read

Allows all users

 

 

 

to complete a

 

 

 

variety of

 

 

 

general actions.

Meeting

OWNER

+Full Control (All)

Grants owners

 

 

 

full access to

 

 

 

meetings that

 

 

 

they own.

 

 

 

For information

 

 

 

about setting up

 

 

 

meetings with

 

 

 

WebEx, see the

 

 

 

PTC Windchill

 

 

 

Specialized

 

 

 

Administration

 

 

 

Guide.

NotificationSubscrip-

Administra-

+Full Control (All)

Grants

tion

tors

 

administrators

 

ALL

 

full access.

NotificationSubscrip-

+Read and +Create

Grants all users

tion

 

 

read and create

 

OWNER

 

access.

NotificationSubscrip-

+Full Control (All)

Grants the owner

tion

 

 

full access.

Team

OWNER

Read

Grants the team

Contexts – Distributed and Hierarchical Administration

69

Object Type

Participant

Permissions

Comment

 

 

 

owner read

 

ALL

 

access.

WTDocumentConfig-

+Full Control (All)

Grants full

Spec

 

 

control to all

 

ALL

 

users.

WTMarkup

+Read, +Download,

Allows all users

 

 

and +Create

to create and

 

 

 

read markups.

 

 

 

These

 

 

 

permissions are

 

 

 

required because

 

 

 

view markups

 

 

 

are not life cycle

 

 

 

managed.

WTMarkup

OWNER

+Modify, +Modify

Allows the

 

 

Content, and +Delete

owner of a

 

 

 

markup the

 

 

 

ability to modify

 

 

 

and delete it.

WTObject

Administra-

+Full Control (All)

Grants full

 

tors

 

control to all site

 

 

 

administrators.

WTObject

View and

!Modify, !Modify

Absolutely

 

Print Only

Content, !Modify

denies users in

 

 

Identity, !Create By

the View and

 

 

Move, !Create, !Set

Print Only

 

 

State, !Revise, !New

license group all

 

 

View Version, !

permissions

 

 

Change Domain, !

except those

 

 

Change Context, !

required to view

 

 

Change Permissions,

and download

 

 

!Delete, and !

objects.

 

ALL

Administrative

 

WTPartConfigSpec

+Full Control (All)

Allows all users

 

 

 

to perform

 

 

 

configuration

 

 

 

management of

 

 

 

business objects

 

 

 

within their

 

 

 

workspace when

 

 

 

using Creo

70

PTC Windchill® Basic Administration Guide

Object Type

Participant

Permissions

Comment

 

 

 

Parametric or

 

 

 

other workgroup

 

 

 

managers.

WTRolePrincipal

ALL

+Read

Grants all users

 

ALL

 

read access.

FvPolicyRule

+Read

Grants all users

 

ALL

 

read access.

FvFolder

+Read

Grants all users

FvHost

ALL

 

read access.

+Read

Grants all users

 

ALL

 

read access.

FvVault

+Read

Grants all users

 

ALL

 

read access.

ReplicaFolder

+Read

Grants all users

 

ALL

 

read access.

ReplicaVault

+Read

Grants all users

 

ALL

 

read access.

RootFolder

+Read

Grants all users

 

ALL

 

read access.

Site

+Read

Grants all users

 

ALL

 

read access.

DerivedImage

+Read, +Create, and

Allows all users

 

 

+Download.

to create, read,

 

 

 

and download

 

 

 

derived images.

DerivedImage

Team

+Full Control (All)

Grants full

 

Members

 

control to all

 

 

 

team members.

Contexts – Distributed and Hierarchical Administration

71

Соседние файлы в предмете [НЕСОРТИРОВАННОЕ]