Chapter 16. User and Group Authorization
|| group="Online Certificate Status Manager Agents"
allow (modify) group="Administrators"
Administrators, agents, and auditors are allowed to read the log configuration; only administrators are
allowed to modify the log configuration.
16.7.44. certServer.log.configuration.SignedAudit.expirationTime
Controls operations on the expirationTime parameter of a log instance.
16.7.44.1. Operations
Operations
read
modify
16.7.44.2. Default ACIs
allow (read) group="Administrators"
|| group="Auditors"
|| group="Certificate Manager Agents"
|| group="Data Recovery Manager Agents"
|| group="Online Certificate Status Manager Agents"
deny (modify) user=anybody
Administrators, auditors, and agents can read the value of the expirationTime parameter; no one
is allowed to modify the value of the expirationTime parameter for the signed audit log.
16.7.45. certServer.log.configuration.fileName
Controls operations on the fileName parameter of a log instance.
16.7.45.1. Operations
Operations
read
modify
16.7.45.2. Default ACIs
allow (read) group="Administrators"
|| group="Auditors"
|| group="Certificate Manager Agents"
|| group="Data Recovery Manager Agents"
|| group="Online Certificate Status Manager Agents"
390
Need help?
Do you have a question about the CERTIFICATE SYSTEM 7.2 - ADMINISTRATION and is the answer not in the manual?