22.12.2012 Views

Front cover - IBM Redbooks

Front cover - IBM Redbooks

Front cover - IBM Redbooks

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

500 Lotus Security Handbook<br />

Anonymous<br />

Anonymous database access is given to Internet users and to Notes users who<br />

have not authenticated with the server.<br />

The default ACL entry for Anonymous for all database templates (.NTF files) has<br />

an access level of Reader, so that users or servers can successfully read from<br />

the template when creating or refreshing .NSF files based on that template.<br />

The default ACL entry for Anonymous for database (.NSF files) files is No<br />

Access.<br />

Database creator user name<br />

The database creator user name is the hierarchical user name of the person who<br />

created the database. The default access for the user who creates the database<br />

is Manager. Typically, this person retains Manager access or is granted Designer<br />

access to the database.<br />

LocalDomainServers<br />

The LocalDomainServers group lists the servers in the same domain as the<br />

server on which the database is stored, and is provided by default with every<br />

Domino Directory. When you create a new database, the default access for<br />

LocalDomainServers is Manager. The group should have at least Designer<br />

access to allow replication of database design changes across the domain. The<br />

LocalDomainServers group is typically given higher access than the<br />

OtherDomainServers group.<br />

OtherDomainServers<br />

The OtherDomainServers group lists the servers outside the domain of the<br />

server on which the database is stored, and is provided by default with every<br />

Domino Directory. When you create a new database, the default access for<br />

OtherDomainServers is No Access.<br />

Acceptable ACL entries<br />

Wildcard entries<br />

To allow general access to a database, you can enter hierarchical names with a<br />

wildcard character (*) in the ACL. You can use wildcards in the common name<br />

and organizational unit components. Users and servers who do not already have<br />

a specific user or group name entry in the ACL, and whose hierarchical names<br />

include the components that contain a wildcard, are given the highest level of<br />

access specified by every one of the wildcard entries that match.<br />

Here is an ACL entry in wildcard format:<br />

– */Illustration/Production/Acme/US

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!