+

Search Tips   |   Advanced Search

Set an LDAP group to be domain administrator in addition to, or instead of, a specific user

Select or create a group in LDAP to act as IBM FileNet domain or Object Store administrators or both, and add any desired user for this administrator role into this group.

You should consult the LDAP documentation for complete information about LDAP groups.

If a group is not granted administrator access and the administrative user is later deleted, it might be difficult to recover administrative access to FileNet, and functions including library creation and search indexing might not function.

This task involves both a domain administrator and an object store administrator.

Follow these instructions to set an LDAP group to be domain administrator in FileNet:


Parent topic:
Configure the FileNet deployment used by Libraries


For the domain administrator

  1. Log into the Administrative Console for Content Engine (ACCE).

  2. Click the Security tab and then click Add.

  3. Name of the group in the Search text field and click Search.

  4. Select the group from the Available Users and Groups pane and the use the move button to add it to the Selected Users and Groups pane.

  5. Set the Apply to field to This object and all children.

  6. Set Permission group to Full Control.

  7. Click OK and then click Save.


For the object store administrator

Follow these instructions to set an LDAP group to be object store administrator in FileNet:

  1. Log into ACCE.

  2. Click ICObjectStore in the navigation pane under Object Stores.

  3. Click the Security tab and then click Add.

  4. Name of the group in the Search text field and click Search.

  5. Select the group from the Available Users and Groups pane and the use the move button to add it to the Selected Users and Groups pane.

  6. Set the Apply to field to This object and all children.

  7. Set Permission group to Full Control.

  8. Click OK and then click Save.