|
|
AccessLevel
|
Specifies the name of the access level. The value used here must be identical to the value used in the access.ini file.
|
Access
|
Specifies whether administrators with this access level can read or write (update) administrative access data, which is controlled by the Administrators panel.
Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
NOTE: When an administrator requests access, Steel-Belted Radius Carrier checks entries in the Administrators panel in SBR Administrator before checking the access.ini and admin.ini files. If an applicable administrative account exists in the Administrators panel, the user is given full access to the Steel-Belted Radius Carrier database, regardless of the configuration of the access.ini and admin.ini files.
|
Certificates
|
Specifies whether administrators with this access level can modify trusted root and server certificate information through SBR Administrator. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
|
CCMPublish
|
Specifies whether administrators with this access level can publish server replication (ccmpkg) information through SBR Administrator. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
|
CCMServerList
|
Specifies whether administrators with this access level can read or write (update) information in the Replication panel in SBR Administrator. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
|
Configuration
|
Specifies whether administrators with this access level can read or write (update) information found in the Authentication Policies panel in SBR Administrator. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
|
CurrentUsers
|
Specifies whether administrators with this access level can read or write (update) the Current Sessions Table, which can be displayed in the Reports panel of SBR Administrator. Write access allows the administrator to delete entries from the Current Sessions Table. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
|
ImportExport
|
Controls whether the Import and Export menu items are enabled in the SBR Administrator.
- Read access allows file export.
- Write access allows file import.
Valid values are:
- r - Read-only access (allows export but not import)
- w - Write-only access (allows import but not export)
- rw - Read/write access (allows import and export)
Data categories without read access are disabled. If a user tries to export categories of data without having sufficient access rights, categories for which the user does not have read access are omitted from the export operation. Similarly, if a user tries to import categories of data without having sufficient access rights, categories for which the user does not have write access are omitted from the import operation.
NOTE: Import and Export are subject to the particular rights that the user has to each type of item, such as Users or Tunnels.
|
IP-Pools
|
Specifies whether administrators with this access level can read or write (update) IP address pool data. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
|
License
|
Specifies whether administrators with this access level can add a new license. Valid values are:
- w - Write-only access
- rw - Read/write access
|
Profiles
|
Specifies whether administrators with this access level can read or write (update) profile data. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
|
Proxy
|
Specifies whether administrators with this access level can read or write (update) proxy target data. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
|
RAS-Clients
|
Specifies whether administrators with this access level can read or write (update) RADIUS client data. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
|
Report
|
Specifies whether administrators with this access level can read or write (update) report data. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
|
Rulesets
|
Specifies whether certificates are replicated within a realm. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
|
Statistics
|
Specifies whether administrators can read Authentication, Accounting, and Proxy statistics generated by the server. Write access is not applicable. Valid values are:
|
Tunnels
|
Specifies whether administrators with this access level can read or write (update) RADIUS tunnel data. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
|
Users
|
Specifies whether administrators with this access level can read or write (update) user data. Valid values are:
- r - Read-only access
- w - Write-only access
- rw - Read/write access
NOTE: You must set the Users parameter to rw (read-write) for a user or group if you want the user or group to be able to import user information into Steel-Belted Radius Carrier.
|