Security Tab
You administer Informatica security on the Security tab of the Administrator tool.
The Security tab has the following components:
- •Search section. Search for users, groups, or roles by name.
- •Navigator. The Navigator appears in the left pane and displays groups, users, and roles.
- •Contents panel. The contents panel displays properties and options based on the object selected in the Navigator and the tab selected in the contents panel.
- •Security Actions menu. Contains options to create or delete a group, user, or role. You can manage LDAP and operating system profiles. You can also view users that have privileges for a service.
Using the Search Section
Use the Search section to search for users, groups, and roles by name. Search is not case sensitive.
1. In the Search section, select whether you want to search for users, groups, or roles.
2. Enter the name or partial name to search for.
You can include an asterisk (*) in a name to use a wildcard character in the search. For example, enter “ad*” to search for all objects starting with “ad”. Enter “*ad” to search for all objects ending with “ad”.
3. Click Go.
The Search Results section appears and displays a maximum of 100 objects. If your search returns more than 100 objects, narrow your search criteria to refine the search results.
4. Select an object in the Search Results section to display information about the object in the contents panel.
Using the Security Navigator
The Navigator appears in the contents panel of the Security tab. When you select an object in the Navigator, the contents panel displays information about the object.
The Navigator on the Security tab displays one of the following sections based on what you are viewing:
- •Groups section. Select a group to view the properties of the group, the users assigned to the group, and the roles and privileges assigned to the group.
- •Users section. Select a user to view the properties of the user, the groups the user belongs to, and the roles and privileges assigned to the user.
- •Roles section. Select a role to view the properties of the role, the users and groups that have the role assigned to them, and the privileges assigned to the role.
The Navigator provides different ways to complete a task. You can use any of the following methods to manage groups, users, and roles:
- •Click the Actions menu. Each section of the Navigator includes an Actions menu to manage groups, users, or roles. Select an object in the Navigator and click the Actions menu to display the create, delete, and move options.
- •Right-click an object. Right-click an object in the Navigator to display the create, delete, and move options available in the Actions menu.
- •Use keyboard shortcuts. Use keyboard shortcuts to move to different sections of the Navigator.
Groups
A group is a collection of users and groups that can have the same privileges, roles, and permissions.
The Groups section of the Navigator organizes groups into security domain folders. A security domain is a collection of user accounts and groups in an Informatica domain. Native authentication uses the Native security domain which contains the users and groups created and managed in the Administrator tool. LDAP authentication uses LDAP security domains which contain users and groups imported from the LDAP directory service.
When you select a security domain folder in the Groups section of the Navigator, the contents panel displays all groups belonging to the security domain.
When you select a group in the Navigator, the contents panel displays the following tabs:
- •Overview. Displays general properties of the group and users assigned to the group.
- •Privileges. Displays the privileges and roles assigned to the group for the domain and for application services in the domain.
- •Permissions. Displays the level of access that users within the group have perform tasks on domain objects, including nodes, grids and application services . Also displays the level of access that users within the group have to perform tasks on connection objects and operating system profiles.
Users
A user with an account in the Informatica domain can log in to the following application clients:
- •Informatica Administrator
- •Data Analyzer
- •Informatica Developer
- •Informatica Analyst
- •Jaspersoft
The Users section of the Navigator organizes users into security domain folders. A security domain is a collection of user accounts and groups in an Informatica domain. Native authentication uses the Native security domain which contains the users and groups created and managed in the Administrator tool. LDAP authentication uses LDAP security domains which contain users and groups imported from the LDAP directory service.
When you select a security domain folder in the Users section of the Navigator, the contents panel displays all users belonging to the security domain. Right-click a user and select Navigate to Item to display the user details in the contents panel.
When you select a user in the Navigator, the contents panel displays the following tabs:
- •Overview. Displays general properties of the user and all groups to which the user belongs.
- •Privileges. Displays the privileges and roles assigned to the user for the domain and for application services in the domain.
Roles
A role is a collection of privileges that you assign to a user or group. Privileges determine the actions that users can perform. You assign a role to users and groups for the domain and for application services in the domain.
The Roles section of the Navigator organizes roles into the following folders:
- •System-defined Roles. Contains roles that you cannot edit or delete. The Administrator role is a system-defined role.
- •Custom Roles. Contains roles that you can create, edit, and delete. The Administrator tool includes some custom roles that you can edit and assign to users and groups.
When you select a folder in the Roles section of the Navigator, the contents panel displays all roles belonging to the folder.
When you select a role in the Navigator, the contents panel displays the following tabs:
- •Overview. Displays general properties of the role and the users and groups that have the role assigned for the domain and application services.
- •Privileges. Displays the privileges assigned to the role for the domain and application services.