After File Viewer is
installed, you can give users and groups entitlement to use it.
About this task
You can give entitlement to the following:
- One or several users
- One or several groups
- Everyone
To enable entitlement of
File Viewer, log in to the
WebSphere® Application Server
administrative console and complete the steps in the following section.
Note:
- The default is Everyone, so if you want to give entitlement to
everyone, you can skip the remainder of this section.
- Entitlement setting will be cleared after upgrading Connections
Docs. You must redo the enabling steps after upgrading.
Procedure
- Enable group membership:
- Open a web browser and navigate to the Integrated Solutions
Console.
- https://DocsLab01.example.com:9043/ibm/console
- Go to .
- In the User Account Repositories section,
ensure that Federated repositories is selected
and click Configure.
- Click the LDAP Repository link under Repository
Identifier. This entry corresponds to an entry created
earlier in the installation procedure.
- Under Additional Properties,
click LDAP entity types.
- Confirm that the objectclass for Group is
valid in your LDAP. Common group attributes are provided in the following
table:
Table 1. Common group attributesThis
table provides suggested default values for common group attributes.
LDAP Server Type |
Accepted objectClasses |
member attributes |
IBM Lotus Domino |
|
member |
IBM Tivoli Directory Server |
groupOfUniqueNames |
uniquemember |
- If changes are made, click OK,
save the changes to the master configuration, and resynchronize the
nodes.
- Set up the group attribute definition:
- Go to .
- In the User Account Repositories section,
ensure that Federated repositories is selected
and click Configure.
- Click the LDAP Repository link under Repository
Identifier. This entry corresponds to an entry created
earlier in the installation procedure.
- Under Additional Properties,
click Group attribute definition.
- Under Additional Properties,
click Member attributes.
- Confirm that the name matches the attribute name that
defines the person entry within the group. This is commonly member.
Common group and member attributes are provided in the previous table.
- If changes are made, click OK,
save the changes to the master configuration, and resynchronize the
nodes.
- Choose an entitlement option:
Note: Currently
there is only one entitlement level, entitledUser,
that can be mapped to users, groups, or everyone. The default value
is Everyone.
- Entitle everyone:
- Log in to the WebSphere® Application
Server administrative console: https://DocsLab01.example.com:9043/ibm/console
- Go to .
- Click ViewerApp.
- Click Security role to user/group mapping.
- Select entitledUser.
- If you want everyone to access File Viewer, select .
- Click OK.
- Save the changes to the master configuration.
- Resynchronize the nodes.
- Go to
- Select ViewerApp.
- Stop and restart the File Viewer application. Check
whether everyone can access File Viewer.
- Entitle users:
- Log in to the WebSphere® Application
Server administrative console: https://DocsLab01.example.com:9043/ibm/console
- Go to .
- Click ViewerApp.
- Click Security role to user/group mapping .
- Select entitledUser.
- Select Map Special Subjects - none. Confirm
that the special subjects column reflects None.
- Select entitledUser.
- Click Map Users.
- In the Search field, enter the user ID
of the person you want to add and click Search.
Available users are listed.
- Select the user and click the right arrow to add them to the list.
- Repeat the process until you have added all of the users that
you want to entitle for File Viewer.
- Click OK.
- Save the changes to the master configuration.
- Resynchronize the nodes.
- Go to .
- Select ViewerApp.
- Stop and restart the File Viewer application.
- Check whether the users specified can access File Viewer.
- Entitle groups:
- Log in to the WebSphere® Application
Server administrative console: https://DocsLab01.example.com:9043/ibm/console
- Go to .
- Click ViewerApp.
- Click Security role to user/group mapping .
- Select entitledUser.
- Select Map Special Subjects - none. Confirm
that the special subjects column reflects None.
- Select entitledUser.
- Click Map Users.
- In the Search field, enter the cn of
the group you want to add and click Search.
Available groups are listed.
- Select the group and click the right arrow to add them to the
list.
- Repeat the process until you have added all of the groups that
you want to entitle for File Viewer.
- Click OK.
- Save the changes to the master configuration.
- Resynchronize the nodes.
- Go to .
- Select ViewerApp.
- Stop and restart the File Viewer application. Check
whether the groups specified can access File Viewer.