Command Reference > infacmd isp Command Reference > AddGroupPrivilege
  

AddGroupPrivilege

Assigns a privilege to a group in the domain. You can assign privileges to a group for the domain. You can also assign group privileges for each application service in the domain.
The infacmd isp AddGroupPrivilege command uses the following syntax:
AddGroupPrivilege

<-DomainName|-dn> domain_name

<-UserName|-un> user_name

<-Password|-pd> password

[<-SecurityDomain|-sdn> security_domain]

<-Gateway|-hp> gateway_host1:port gateway_host2:port...]

[<-ResilienceTimeout|-re> timeout_period_in_seconds]

<-GroupName|-gn> group_name

[<-GroupSecurityDomain|-gsf> group_security_domain]

<-ServiceName|-sn> service_name

<-PrivilegePath|-pp> path_of_privilege
The following table describes infacmd isp AddGroupPrivilege options and arguments:
Option
Argument
Description
-DomainName
-dn
domain_name
Required. Name of the Informatica domain. You can set the domain name with the -dn option or the environment variable INFA_DEFAULT_DOMAIN. If you set a domain name with both methods, the -dn option takes precedence.
-UserName
-un
user_name
Required if the domain uses Native or LDAP authentication. User name to connect to the domain. You can set the user name with the -un option or the environment variable INFA_DEFAULT_DOMAIN_USER. If you set a user name with both methods, the -un option takes precedence.
Optional if the domain uses Kerberos authentication. To run the command with single sign-on, do not set the user name. If you set the user name, the command runs without single sign-on.
-Password
-pd
password
Required if you specify the user name. Password for the user name. The password is case sensitive. You can set a password with the -pd option or the environment variable INFA_DEFAULT_DOMAIN_PASSWORD. If you set a password with both methods, the password set with the -pd option takes precedence.
-SecurityDomain
-sdn
security_domain
Required if you use LDAP authentication. Name of the security domain that the user belongs to. You can set a security domain with the -sdn option or the environment variable INFA_DEFAULT_SECURITY_DOMAIN. If you set a security domain name with both methods, the -sdn option takes precedence. Security domain is case sensitive. Default is Native.
-Gateway
-hp
gateway_host1:port gateway_host2:port ...
Required if the gateway connectivity information in the domains.infa file is out of date. The host names and port numbers for the gateway nodes in the domain.
-ResilienceTimeout
-re
timeout_period_in_seconds
Optional. Amount of time in seconds that infacmd attempts to establish or reestablish a connection to the domain. If you omit this option, infacmd uses the timeout value specified in the INFA_CLIENT_RESILIENCE_TIMEOUT environment variable. If no value is specified in the environment variable, the default of 180 seconds is used.
-GroupName
-gn
group_name
Required. Name of the group to which you are assigning the privilege. To enter a name that contains a space or other non-alphanumeric character, enclose the name in quotation marks.
-GroupSecurityDomain
-gsf
group_security_domain
Required if you use LDAP authentication. Name of the security domain that the group to which you are assigning the privilege belongs to. Default is Native.
-ServiceName
-sn
service_name
Required. Domain or application service name for which you want to view privileges.
-PrivilegePath
-pp
path_of_privilege
Required. Fully-qualified name of the privilege you want to assign to the group. A fully-qualified name includes privilege group name and privilege name. For example, a fully-qualified privilege name for the Repository Service is folder/create. If the privilege name includes spaces, enclose the path in quotation marks as follows:
“Runtime Objects/Monitor/Execute/Manage Execution”
If the privilege name includes the special character “/”, add the escape character ”\” before it as follows:
“Model/View Model/Export\/Import Models”