Administer > Configure Security > Using the Security Folder > Configure Security: All Users Access All Nodes

Configure Security: All Users Access All Nodes

If you want all of your NNMi users to access all of the nodes discovered by NNMi, use these guidelines.

Note You can also use the nnmsecurity.ovpl command to configure User Accounts, User Groups, Security Groups, and Tenants.

Tip Select HelpSystem Information to view the User Name, NNMi Role, and User Group for the current NNMi session.

To configure Security:

  1. Navigate to the Security workspace.
  2. Make your configuration choices.
  3. Click  Save and Close.
Configure Security Tasks (Using the Security workspace)
Task Description
Determine your users and their NNMi User GroupNNMi User Groups are those User Groups provided by NNMi. Users cannot access the NNMi console until their User Account is mapped to at least one of the following NNMi User Groups: NNMi Administrators, NNMi Level 2 Operators, NNMi Level 1 Operators (with more limited access privileges than Level 2 Operators), and NNMi Guest Users or Groups

See Determine Your Security Strategy and the following topics:

Control Menu Access

User Groups Provided in NNMi

Determine which NNMi User Group to Assign

Configure User Accounts You must create a User Account for each NNMi user.
Map User Accounts to the Predefined NNMi User Groups

A particular user cannot access the NNMi console until their User Account is mapped to at least one of the following predefined default NNMi User Groups:

  • NNMi Administrators
  • NNMi Level 2 Operators
  • NNMi Level 1 Operators (with more limited access privileges than Level 2 Operators)
  • NNMi Guest Users

Note NNMi provides two additional User Groups:

  • NNMi Global Operators (secondary)

    Assigning users to this secondary group, in addition to the user's currently assigned NNMi Guest User, NNMi Level 1 Operator, or NNMi Level 2 Operator assignment, provides access to all topology objects, but does not change any other aspect of their currently assigned NNMi Guest User, NNMi Level 1 Operator, or NNMi Level 2 Operator assignment.

    Users assigned to the NNMi Administrators User Group do not need any secondary group assignment. These users already can access all topology objects.

  • NNMi Web Services Client

    Used only to provide access for software that is integrated with NNMi. See Integrations with and Third-Party Products - for example,  RAMS MPLS WAN Configuration (NNMi Advanced)). Do not use any other User Group for software integrations.

Verify Your Configuration Changes

NNMi provides a report that includes information about any of the following potential problems:

  • Users Accounts that are not mapped to a User Group
  • User Accounts that are not mapped to an NNMi User Group
  • User Accounts that have unusual NNMi role combinations
  • Security Groups that include nodes from multiple tenants
  • Empty User Groups and Security Groups
  • Tenants with the same name
  • Security Groups with the same name