22.12.2012 Views

Front cover - IBM Redbooks

Front cover - IBM Redbooks

Front cover - IBM Redbooks

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

signed by signers who are not listed in the ECL, deselect “Allow user to<br />

modify” in the Administration ECL.<br />

► Know your signers. Trusting signed active content, especially from other<br />

organizations, is risky. Before adding an active content author to an ECL,<br />

decide if you trust that the author has created safe code.<br />

► Create a separate certifier for an organizational unit to issue IDs specifically<br />

for users who must sign templates and applications – for example, Enterprise<br />

ECLApp Signer/West/Acme. Then users who create templates and<br />

applications use those IDs to sign templates and applications. You can then<br />

set up the administration ECL to trust any user in that special organizational<br />

unit, or fine-tune it on a per-user basis.<br />

Chapter 11. Domino/Notes 6 security features 533

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!