Page tree

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Include Page
_IW Academy
_IW Academy

Hide_comments

Table of Contents

InfiMONITOR NEXT -  is a multi-user system with access rights differentiation. A separate account can be created for each monitoring system operator, to be used for authorization in the web interface.

Access rights

Access The access rights depend on the user account's role. There are following rolesThe roles are as follows:

  • Superadmin - assumes full access rights and is assigned by default to the "admin" user account. This role does is not display displayed anywhere, cannot be removed and cannot be assigned.
  • Admin - NEXT administrator role. The role provides the following access rights:
    • All operations with user accounts and user groups. The exception is the "admin" user account.
    • All operations with the wireless devices.
    • All operations with events.
    • View the monitoring system settings.
  • Operator -  provides the following access rights:
    • View and manage wireless devices.
    • View and manage events.
    • View user accounts.
  • Observer - assigned by default to all new NEXT user accounts.  The role provides the following access rights:
    • View the profiles of the wireless devices profiles.
    • View and manage events.
    • View user accounts.

...

Visibility areas are a restrictive add-on for access rights. The visibility area limits the list of wireless devices that the user can access. The list of the available devices list is determined by groups of devices assigned to a user account or to a group of accounts. Thus, the user will have access only to those devices that are included in the device groups assigned to him or in the users group where he belongs to.  Visibility The visibility area is also determined by the role:

  • Superadmin and Admin - full visibility, a user will always see all devices.
  • Operator and Observer - zero visibility, a user will only see the devices included in the groups assigned to him.

Let's look at the examplesan example:

  • Devices The devices HostA and HostB included to the Group1 are part of Group1's devices group.Devices HostC
  • The devices HostC and HostD included to the Group2 are part of Group2's devices group.
  • User UserA has an Operator role the and Group1 is assigned to him.
  • User UserB  has an Admin role the Group2 and Group2 is assigned to him.

As a result:

  • User UserA can only manage the configuration of the HostA and HostB devices. His role assumes the management of the devices management, but the visibility area is limited only with devices group Group1to Group1.
  • User UserB can perform all the operations with all the devices. His role allows any operation, and the visibility area is not limited.  It means This implies that assign assigning device groups to a user with the having an admin role has no sense.

Superadmin account

NEXT by default has By default, NEXT has a super-administrator account with the name "admin" . It that has a following features:

  • The This administrator account login cannot be changed.
  • An This admin account can not re removed.
  • The This administrator account always has a Superadmin role.

User account management

Use the side Click on "Users" at the top menu to proceed to the user account management section:

Center
Scroll Title
titleFigure - transition to account management section

Image Removed

.

By default, the section displays a list of groups and users user accounts. For each account, the following values are displayed:

  • "Role" - current user role.
  • "Name" - user name.
  • "Login" - user login.
  • "Email" - user email address.
  • "Source" - account source:
    • NMS - local user account.
    • LDAP - account obtained from the directory server using the LDAP protocol.
Center
Scroll Title
title-alignmentcenter
titleFigure - List of users accounts and groups
Image RemovedImage Added

...

User groups

Groups are necessary to effectively manage the visibility areas of InfiMONITOR NEXT users visibility areas. Each user group can be assigned to one or more device groups. Thus, the visibility area of the group users will be extended to all the devices included in the device groups assigned to this user group.

  • Each user must be included in at least one user group.
  • By default, in the monitoring system the "Administrators" group is created, and with "admin" user included. This group is required and cannot be removedhaving included the user with Superadmin role.

User group creation

Для создания новой группы пользователей нажмите кнопку "Новая группа". На экране появится форма, содержащая следующие поля:

  • "Название" - произвольное имя группы пользователей.
  • "Описание" - произвольное описание группы. 

Заполните эти поля и нажмите на кнопку "Сохранить" для создания новой группыTo create a new user group, click on the "Add group" button. A form will appear on the screen containing the following fields:

  • Name - user group name.
  • Description - arbitrary group description. 
  • Devices groups - the list of devices groups that will be included in the visibility area of new user group.
  • Users - the list of user accounts included in the group.

Fill these fields and click on the "Save" button to add a new group.

Center
Scroll Title
titleРисунок - Добавление группы пользователей

Image Removed

Назначение групп устройств на группы пользователей

Назначение групп устройств возможно только для уже созданной группы.
Выберите группу пользователей, на которую вы хотите назначить группы устройств. Справа появится блок с элементами управления и информацией о выбранной группе. Перейдите в секцию "Hosts", здесь отображаются все назначенные группы устройств. Для назначения новой группы нажмите кнопку "Выбрать группы" и в появившемся меню отметьте все те группы, которые должны быть назначены выбранной группе пользователей. Для снятия назначения отмените выбор повторным нажатием курсором на соответствующих группах устройств. Для применения изменений нажмите кнопку "OK", а затем "Сохранить".
Center
Scroll Title
titleРисунок - Назначение групп устройств

Image Removed

Удаление группы пользователей

Удаление группы возможно только при условии отсутствия в ней учетных записей пользователей. Переместите всех пользователей удаляемой группы в другую группу, затем выберите удаляемую группу и нажмите кнопку "Delete".

Создание учетной записи пользователя

Для добавления новой учетной записи пользователя нажмите кнопку "Новый пользователь". На экране появится форма, содержащая две секции:

  • Информация - основные параметры учетной записи пользователя:
    • "Имя" - произвольное имя пользователя, например, его имя и фамилия.
    • "Email" - адрес электронной почты пользователя, на который в дальнейшем будут отправляться уведомления.
    • "Логин" - логин пользователя, используемый для аутентификации.
    • "Пароль" и "Повтор пароля" - пароль учетной записи и его подтверждения.
    • "Роль" - роль учетной записи.
    • "Учетная запись активирована" - флаг активации/деактивации учетной записи пользователя. Пользователю с деактивированной учетной записью будет запрещен вход в web-интерфейс NEXT.
  • Группы - группы пользователей, в которую включена данная учетная запись. В этой секции отображается список текущих групп. Для исключения учетной записи из группы или включения в новую нажмите кнопку "Выбрать группы", затем выберите или снимите выбор с соответствующих групп и нажмите кнопку "OK".

...

-alignmentcenter
titleFigure - Add user group

Image Added

Remove users groups

In order to be able to delete a user group, it must not contain user accounts. Move all users of the group need to be removed to another group, then select the group and click the "Delete" button.

Create a user account

To add a new user account, click on the "Add User" button. A form will appear on the screen containing two sections:

  • Information - basic user account settings:
    • Name - an arbitrary user name, such as his first and last name.
    • Email - the email address of the user to which notifications will be sent.
    • Login - user login used for authentication.
    • Password and Password confirm - account password and confirmation.
    • Role - account role.
    • User groups - the list of groups where the account is included.
    • Hosts groups - the list of devices groups that will be included in the user's visibility area.
    • Active user - activation/deactivation flag of the user account. A user with a deactivated account will be denied the access to the NEXT web interface.

There is field "Email" in "Notifications" section must be filled. This email will be used for user notifications.

To apply the changes, click the "Save" button.

Center
Scroll Title
titleРисунок - Создание учетной записи пользователя

 Image Removed

Назначение групп устройств

Назначение групп устройств возможно только для уже созданной учетной записи.

...

-alignmentcenter
titleFigure - Create user account

Image Added 

Assigning device groups

Assigning device groups is possible only for an account that has already been created.
Select the account to which the device groups should be assigned. A block with information about the selected group and management options will appear on the right. Go to the "Devices" section where all the assigned device groups are displayed. To assign a new group, click on the "Add groups" button and in the new window, check all the groups that should be assigned to the selected user account. 
To deselect, click on the corresponding device group again. To apply the changes, click "OK" and then "Save".