Assign user rights to make system policy changes

In
User Rights Assignment Policy Properties
, specify which users are permitted to:
  • Back up or restore
    FactoryTalk Directory
    , the System folder, or applications
  • Change the
    FactoryTalk Directory
    server computer
  • Switch between primary and secondary servers in a redundant pair (for example, HMI servers, or data servers)
  • Modify the security authority identifier
Policy settings are completely separate in the network directory and local directory. The network directory and local directory also have different default policy settings.
To assign user rights to system policy changes
  1. Log into the
    FactoryTalk
    directory.
  2. In
    FactoryTalk Administration Console
    Explorer
    , expand
    System
    >
    Policies
    >
    System Policies
    .
  3. Right-click
    User Rights Assignment
    and select
    Properties
    .
  4. In
    User Rights Assignment Policies
    , next to the policy to secure and to the right of
    Configure Security
    , select
    Browse
    (...)
    .
  5. In
    Configure Securable Action
    , on the
    Policy Setting
    tab, select
    Add
    .
    Select User or Group
    opens.
  6. (optional) Use the filter options to restrict the accounts shown in the lists.
  7. Choose the user or group account, then select
    OK
    . The user or group is added to the list on the
    Policy Setting
    tab.
    • To allow the user permission to perform the action from the specified computer or group, select
      Allow
      .
    • To deny the user permissions to perform the action from the specified computer or group, select
      Deny
      .
    • To remove explicit
      Allow
      permissions, select the user and computer and select
      Remove
      . If no permissions are specified,
      Deny
      is implied.
  8. When finished, select
    OK
    to apply the policy changes.
Provide Feedback
Have questions or feedback about this documentation? Please submit your feedback here.
Normal