Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

After you create an admin group or an admin role, you can view, modify, and delete it.

...

Note

Note

You cannot delete the cloud-api-only and splunk-reporting-group admin groups. These admin groups are automatically created when you configure your Grid for Cloud Network Automation and Reporting and Analytics respectively. For information about Cloud Network Automation and Reporting and Analytics, see Deploying Cloud Network Automation  and Infoblox Reporting and Analytics.

To delete an admin group:

...

You can set a time duration for the password for each admin group such that the password is valid only for that duration. After the specified duration expires, the password for the users of the group expires. 

Warning

Warning

The password expiry settings are applicable only to users with a local account.

To set the time duration for a password for each admin group:

  1. Go to the Administration tab, Administrators tab -> Groups tab, and select the checkbox next to the group for which you want to set the password time duration, and then click the Edit icon.

  2. Click the Password tab.

  3. Click the Override button if you want the time duration that specify here to override the time duration you set when specifying admin passwords using Grid Properties Editor.
    Note that the options in the screen are enabled only if you click the Override button. If you do not click Override, the time duration you set when specifying admin passwords using Grid Properties Editor applies.

  4. Select the Password must expire checkbox.

  5. In the Password must expire every _ days field, enter the number of days for which the password must be valid. For example, if you enter 11, the password is valid for 11 days.

  6. In the Reminder _ days prior to expiration field, enter the number of days before the expiry that NIOS sends a reminder. The range of days is from 1 to 30. The number that you enter here must always be lower than the number you enter in the Password must expire every _ days field.

  7. Click Save & Close.

Note

Note

  • If you click the Override button and do not select the Password must expire checkbox, it means that the password for the admin group will never expire.

  • The time duration that you set here does not apply to the saml_group and splunk-reporting groups.

...

Warning

Warning

Disabling multiple login sessions is possible only for users with local or RADIUS accounts.

To do this:

  1. Go to the Administration tab, Administrators tab -> Groups tab, and select the checkbox next to the group for which you want to disallow multiple logins and click the Edit icon.

  2. Click the Security tab.

  3. Click the Override button if you want the override the multiple login sessions setting that you specified for the Grid

  4. Select the Disable Concurrent Login checkbox to disallow a member of the group to log on to multiple sessions of the same NIOS system; that is to disallow multiple login sessions per user. 
    Note that Before you disable multiple logins for a group in a NIOS system, ensure that all existing sessions (if any) of members of that group in that NIOS system are logged out. If not, the existing sessions will continue to remain active even after you disable multiple logins.

  5. Click Save & Close.

...

You can disable a group of users who have not logged in to NIOS for a specified duration of time.

Warning

Warning

Disabling inactive users is possible only for local users.

To do this:

  1. Go to the Administration tab, Administrators tab -> Groups tab, and select the checkbox next to the group for which you want to disable users.

  2. Click the Security tab.

  3. Click the Override button if you want to override the disable setting that you specified for the Grid

  4. Select the Disable Inactive Users checkbox.  

  5. In the Disable account if user has not logged in for <time period> days field, specify the time period (in days) after which users who have not logged in must be disabled. The range of days is from 2 to 9999. You can also specify a reminder to be sent in the Remind <days> prior to expiration field. The range of days is from 1 to 30. The number of days you specify in this field is the time from which users start getting daily email reminders that their account will be disabled. NIOS sends the email reminder only if an email address has been configured for the user.

  6. Select the Allow user to reactivate account via serial console and Allow user to reactivate account via remote console checkboxes if you want users to activate their account after it has been disabled. To reactivate using the serial console, see Deploying a Single Independent Appliance. To reactivate using the remote console, type ssh <user name>@<ip address>.
    Note that reactivating the account using the serial console or the remote console is possible only for superusers.

  7. Click Save & Close.