class UserManagement

ManagedElement
+-SystemFunctions
+-SecM
+-UserManagement
+-AuthenticationOrder [0..1]
+-LdapAuthenticationMethod [1..1]
+-LocalAuthorizationMethod [1..1]

User Management MOC.

This MO is created by the system.

Attributes
string[0..1]
legalNotice = IF YOU ARE NOT AN AUTHORIZED USER, PLEASE EXIT IMMEDIATELY
The legal notice presented to the user when starting an O&M session.

The message is presented to the client before authentication takes place. Depends on the client capability and configuration if the message is presented to the O&M user. The O&M user may receive this information before authentication if the authentication is password based; otherwise, it is perceived as post-authentication message. The purpose of the message is to warn the user about the consequences of unauthorized access. No value means there is no legal notice.
SecSecM_UserManagement_loginFailureDelay[0..1]
loginFailureDelay = 5
Delay after a failed login attempt in seconds.

No value means no delay.
SecSecM_UserManagement_targetType[0..] nonUnique
targetType
Lists the target types of the ME for Target Based Access Control (TBAC).

This attribute is optional for Authentication Methods that require TBAC configuration. Authentication Methods use TBAC to determine the following: whether a user can be authorized in the ME, and which authorization profiles apply to the user in the ME, based on the target types specified in this attribute.

This attribute can contain any classifier string for the ME such as geographical, for example: 'stockholm', network, for example 'ims', or functional identifiers, for example 'cscf', and any combination of these.

The generic behavior of TBAC for authorization is as follows:

TBAC is LOCKED in the ME: authorization is performed without TBAC.
TBAC is UNLOCKED in the ME: authorization is performed if the targets that the user is provided with exactly match at least one string of configured target types. Otherwise, authorization fails.

Determining the authorization profiles of the user is specific per Authentication Method.

The LOCKED and UNLOCKED states of TBAC in the ME are controlled by the Authentication Methods.

Example value: 'cscf.ims.stockholm'.
string[0..1]
userLabel
An additional descriptive text.
string
key
mandatory
noNotification
restricted
userManagementId
The value component of the RDN.