LiftMaster IPAC IPAC Server Administrator's Manual - Page 302

Tenant Account Administrators, Activity Logs

Page 302 highlights

IPAC Server Administrator's Manual Page 301 of 334 Users and Groups Tenant Account Administrators: Cannot edit the name of a user alias. Cannot edit the photo of a user alias. Cannot edit the enable from and expires on fields for a user alias. Can perform all other user and group administration like a System Administrator. Activity Logs Tenant Account Administrators: Can view the System Activity log for the Tenant Account, which shows activity related to only those devices and users to which the Tenant Account has access. Can see if a user from a different Tenant Account has interacted with a device on the Administrator's own Tenant Account, but cannot see the user's name. For example, an Administrator for Tenant Account "A" can see if a user from Tenant Account "B" has attempted access at a Tenant "A" door, but cannot see the user's name. The name is not visible since that would represent a leak of data between Tenant Accounts. However, this information is available to System Administrators. Can view the Administrative Journal for the Tenant Account, which tracks the actions performed by all Tenant Account Administrators. This journal also shows actions performed by System Account Administrators when they had the Tenant Account selected as the Active Account. Dashboard Can control devices owned by the Tenant Account. Can view devices that are shared by multiple Accounts. Can control devices that are shared by multiple accounts if Activate Devices has been selected. Email Notifications Administration of email notifications is the same for Tenant Administrators and System Administrators. System Management No access to the System link or any system management pages. Threat Levels Can create new threat levels. Ability to change threat levels must be specified in the Account section. No access to shared devices when the device is out of its default threat level. 301

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336

IPAC Server Administrator’s Manual
Page 301 of 334
301
Users and Groups
Tenant Account Administrators:
Cannot edit the name of a user alias.
Cannot edit the photo of a user alias.
Cannot edit the enable from and expires on fields for a user alias.
Can perform all other user and group administration like a System Administrator.
Activity Logs
Tenant Account Administrators:
Can view the System Activity log for the Tenant Account, which shows activity related to
only those devices and users to which the Tenant Account has access.
Can see if a user from a different Tenant Account has interacted with a device on the
Administrator’s own Tenant Account, but cannot see the user’s name. For example, an
Administrator for Tenant Account “A” can see if a user from Tenant Account “B” has
attempted access at a Tenant “A” door, but cannot see the user’s name. The name is not
visible since that would represent a leak of data between Tenant Accounts. However, this
information
is
available to System Administrators.
Can view the Administrative Journal for the Tenant Account, which tracks the actions
performed by all Tenant Account Administrators. This journal also shows actions performed
by System Account Administrators when they had the Tenant Account selected as the Active
Account.
Dashboard
Can control devices owned by the Tenant Account.
Can view devices that are shared by multiple Accounts.
Can control devices that are shared by multiple accounts if Activate Devices has been
selected.
Email Notifications
Administration of email notifications is the same for Tenant Administrators and System
Administrators.
System Management
No access to the System link or any system management pages.
Threat Levels
Can create new threat levels.
Ability to change threat levels must be specified in the Account section.
No access to shared devices when the device is out of its default threat level.