About Permissions

Systems Management Server (SMS) has the following permissions. To see which permissions apply to which security object classes and instances, see About Permissions and Security Objects.

Administer
The ability to assign security rights for a security object class, for any user. For example, a user with Administer permission on the Package security object class can create, modify, or delete any possible security right having to do with packages for any user.

It is not possible to delete Administer permission on a particular object for the current user.

This permission applies to all security object classes.

Advertise
The ability to advertise to a collection. This is not the same as the ability to create advertisements; that requires Create permission on the Advertisement security object class. (See About Advertisement Security.)

This permission applies to the Collection security object class and instances.

Create
The ability to create an instance of a security object class.

This permission applies to all security object classes.

Delete
The ability to delete an instance of a security object class.

This permission applies to all security object classes.

Delete Resource
The ability to delete a resource from a collection. (The Delete permission on a collection includes the Delete Resource permission.)

This permission applies to the Collection security object class and instances.

Distribute
The ability to send packages to distribution points.

This permission applies to the Package security object class and instances.

Modify
The ability to modify an instance of a security object class.

This permission applies to all security object classes and instances except the Status Message security object class.

Modify Resource
The ability to modify a resource in a collection.

This permission applies to the Collection security object class and instances.

Read
The ability to view an instance and its properties.

This permission applies to all security object classes and instances.

Read Resource
The ability to view the properties of resources in the collection.

This permission applies to the Collection security object class and instances.

Use Remote Tools
The ability to use Remote Tools on a resource.

This permission applies to the Collection security object class and instances.

View Collected File
The ability to view the file inventory of a client.

This permission applies to the Collection security object class and instances.

Related Topics

Topic Link

About Permissions and Security Objects

Topic Link

About Advertisement Security

Topic Link

About Collection and Resource Security

Topic Link

Security Rights Overview

Topic Link

Security Configuration Overview