立即与支持人员聊天
与支持团队交流

Security Explorer 9.9.2 - User Guide

Getting Started with Security Explorer Managing permissions Searching Managing security Managing objects
Managing folders and files Managing shares Managing registry keys Managing services Managing tasks Managing groups and users Managing Favorites Managing Enterprise Scopes Updating licenses Managing network drives
Working with Microsoft SQL Server Working with Microsoft Exchange
Checking minimum requirements Viewing Exchange permissions Granting Exchange permissions Revoking Exchange permissions Cloning Exchange permissions Searching for Exchange server objects and permissions Backing up and restoring Exchange server security Modifying Exchange permissions Managing Exchange group memberships Exporting Exchange security permissions Creating Exchange databases Creating public folder mailboxes Managing Exchange administrators Managing Exchange distribution groups Managing mail contacts Managing mail users Managing mailboxes Managing mailbox folders Managing public folders Using role based access control Setting options for Exchange security
Working with Microsoft SharePoint Working with Access Explorer Working with Microsoft Active Directory Customizing Security Explorer Using the command line Using PowerShell cmdlets Troubleshooting

Setting options for Access Explorer

1
Choose Tools | Options, and open the Access Explorer tab.
Table 9. View options

Display folder and file resource groups

By default, folders and files are grouped into resource groups. You have to select a resource group to display the folders and files in that group. To display all the files and folders when you select an account or computer, clear the check box. It is recommended that you keep this option selected as the list of folders and files could be very large.

Use “Paging” when displaying results

By default, when you select a resource group, the folders and files are grouped in pages with a maximum of 2500 results per page. You can change the number of results per page by typing a new value in the Page Size box. To display all the folders and files at once, clear the check box. It is recommended that you keep this option selected as the list of folders and files could be very large.

Always reload results when performing management operations

By default, management operations, such as Grant, Revoke, or Clone, and changes applied through the Permission Wizard are performed on cached Access Explorer results. A warning message displays and gives you the opportunity to force an update and reload the results before the operation is performed. If you want to bypass this warning message and always reload the results, select this check box.

Allow operations to be performed directly on Enterprise objects

By default, management operations, such as Grant, Revoke, or Clone, are performed on Access Explorer results (folders and files) only. If you want to perform these operations on Access Explorer objects (accounts, computers, and resource groups), select this check box.

Show warning dialogs for grant, revoke, and clone operations

By default, a warning message displays if a Grant, Revoke, Clone, or Set Owner operation is selected for an Access Explorer account, computer, or resource group. If you want to suppress the display of this warning message, clear the check box. Available only if Allow operations to be performed directly on Enterprise objects is selected.

Include group memberships

By default, only explicit permissions for the parent account are included in any Security Explorer management operation. If you want to also include group membership results, select this check box.

Do not perform operations on the ‘Domain User’ group

By default, operations are not performed on the Domain User group.

 

Working with Microsoft Active Directory

In the Active Directory Security module, you can easily manage permissions on objects in Active Directory® to secure and protect your data.

Topics:

Viewing Active Directory permissions

NOTE: The View Permissions task opens the Browse tab.
1
Open the Active Directory Security module.
2
In the Navigation pane, expand the Active Directory® node to browse all Active Directory objects in the default naming contexts of the specified domains. See Using the Navigation pane.
If loading is taking too long, you can click Stop in the loading progress bar. To reload the current node, click Reload or press F5. See Using the loading progress bar.

Granting Active Directory permissions

You can grant permissions to domain users and groups without affecting the permissions of any other user. First, choose the permissions to grant, and select a domain user or group. You can grant different permissions for several domain users and groups with one operation.

TIP: The Grant task provides a quick way to grant permissions. See Using the Grant task. For more options, add a path, and click Switch to Security Explorer Classic (Advanced).
1
Open the Active Directory Security module.
The Grant Active Directory Permissions dialog box displays the path, and the associated groups and users for the current object. The navigation tree is hidden by default. To view the navigation tree, click 4.
To return the full list to view, click Reset. The list returns to full view the next time you open Grant Permissions.
To display users in the list, click Show Users. To return the list to show only groups, click Refresh.
5
From the Permission list, select the permissions to grant, and whether or not to Allow or Deny. If the choice is not available in the list, click Advanced Permission Selection to create a custom choice.
6
From the Applies To list, select how to apply the permissions.
8
To add the domain group/user to the List of users and groups to grant list, click Add.
TIP: To add additional domain groups or users to the List of users and groups to grant list with the selected permission settings, you can hold down CTRL or SHIFT, and click a domain group or user from the list, or double-click a group or user in the navigation tree.
9
Click OK. The Granting Permissions box displays the progress. See Completing a process.
相关文档

The document was helpful.

选择评级

I easily found the information I needed.

选择评级