Searching the Help
To search for information in the Help, type a word or phrase in the Search box. When you enter a group of words, OR is inferred. You can use Boolean operators to refine your search.
Results returned are case insensitive. However, results ranking takes case into account and assigns higher scores to case matches. Therefore, a search for "cats" followed by a search for "Cats" would return the same number of Help topics, but the order in which the topics are listed would be different.
Search for | Example | Results |
---|---|---|
A single word | cat
|
Topics that contain the word "cat". You will also find its grammatical variations, such as "cats". |
A phrase. You can specify that the search results contain a specific phrase. |
"cat food" (quotation marks) |
Topics that contain the literal phrase "cat food" and all its grammatical variations. Without the quotation marks, the query is equivalent to specifying an OR operator, which finds topics with one of the individual words instead of the phrase. |
Search for | Operator | Example |
---|---|---|
Two or more words in the same topic |
|
|
Either word in a topic |
|
|
Topics that do not contain a specific word or phrase |
|
|
Topics that contain one string and do not contain another | ^ (caret) |
cat ^ mouse
|
A combination of search types | ( ) parentheses |
|
Security Groups
In the NNMi security model, user access to nodes is controlled indirectly though user groups and security groups. Each node in the NNMi topology is associated with only one security group. A security group can be associated with multiple user groups.
Each user account is mapped to the following user groups:
-
One or more of the following preconfigured NNMi user groups:
- NNMi Administrators
- NNMi Global Operators
- NNMi Level 2 Operators
- NNMi Level 1 Operators
- NNMi Guest Users
This mapping is required for NNMi console access and determines which actions are available within the NNMi console. If a user account is mapped to more than one of these NNMi user groups, the user receives the superset of the permitted actions.
Note The NNMi Web Services Clients user group does not grant access to the NNMi console; however, it does grant administrator-level access to all NNMi objects.
Note The NNMi Global Operators User Group (
globalops
) grants access to topology objects only. A user must be assigned to one of the other User Groups (level2
,level1
, orguest
) to access the NNMi console.The administrator should not map the
globalops
User Group to any security group because this User Group is, by default, mapped to all security groups.
-
Zero or more custom user groups that are mapped to security groups.
These mappings provide access to objects in the NNMi database. Each mapping includes an object access privilege level that applies to the nodes for a security group. The object access privilege level also applies to the related database objects, such as interfaces and incidents. For example, a user with Object Operator Level 1 access to node A containing interfaces X and Y has Object Operator Level 1 access to all of the following database objects:
- Node A
- Interfaces X and Y
- Incidents whose source object is node A, interface X, or interface Y
NNMi provides the following security groups:
-
Default Security Group
In a new NNMi installation, the Default Security Group is the initial security group assignment for all nodes. By default, all users can see all objects in the Default Security Group. The NNMi administrator can configure which nodes are associated with the Default Security Group and which users can access the objects in the Default Security Group.
-
Unresolved Incidents
The Unresolved Incidents security group provides access to incidents that NNMi creates from received traps whose source node is not in the NNMi topology. By default, all users can see all incidents associated with the Unresolved Incidents security group. The NNMi administrator can configure which users can access the incidents associated with the Unresolved Incidents security group.
All sensors inherit the security group assignment of the node.
Note The following best practices apply to NNMi security configuration:
- Map each user account to only one preconfigured NNMi user group.
- Do not map the preconfigured NNMi user groups to security groups.
- Because any user account mapped to the NNMi Administrators user group receives administrator-level access to all objects in the NNMi database, do not map this user account to any other user groups.
- Create a separate user account for the Web Services Client role. Because this user account has access to the entire NNMi topology, map this user account to only the NNMi Web Service Clients user group.
We welcome your comments!
To open the configured email client on this computer, open an email window.
Otherwise, copy the information below to a web mail client, and send this email to network-management-doc-feedback@hpe.com.
Help Topic ID:
Product:
Topic Title:
Feedback: