Configuring the system administrators can implement the configuration of system security policy, permission/domain-specific management of the ATIC Management center, restriction to the IP addresses that access the ATIC Management center, and can monitor and manage online administrators in real time.
The system security policy contains the password policy, session timeout duration, and login policy.
The password policy defines the minimum length and complexity of the passwords of the system administrators.
The session timeout duration refers to the period in which the session between the system administrator and the ATIC Management center has been interrupted because of timeout. Any operations of the system administrator on the ATIC Management center will clear the session timeout duration and restart the time counting.
If the system administrator performs no operation within the timeout duration after logging in to the ATIC Management center, the current session will be interrupted because of timeout. When the system administrator wants to perform operations on the ATIC Management center again, the system administrator needs to re-log in to the ATIC Management center.
The login policy defines whether the system will be locked after the password has been entered incorrectly for a certain consecutive times within 10 minutes and when the system will be unlocked automatically if the system is locked.
The permission/domain management of the ATIC Management center and the restriction to the IP addresses that access the ATIC Management center are implemented by configuring the administrator groups and administrators as follows:
The administrator groups are collections of the operation permissions. You can assign an administrator group to administrator so that the administrator can have the permission on this administrator group. The ATIC Management center provides three default administrator groups, namely the administrator, operator, and auditor groups.
The system provides the default administrator admin. The default administrator has all operation permission and can manage all resources. In addition, the default administrator cannot be modified. You can create a new administrator and select an administrator group and resources for this administrator to implement the permission/domain-specific management of the ATIC Management center.
You can select the IP address segments that can access the ATIC Management center for an administrator to implement the restriction of IP addresses that access the ATIC Management center.