<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to disable SMC plug-in for selected users in Administration and Deployment</title>
    <link>https://communities.sas.com/t5/Administration-and-Deployment/How-to-disable-SMC-plug-in-for-selected-users/m-p/237571#M3674</link>
    <description>&lt;P&gt;Grating,&lt;/P&gt;
&lt;P&gt;We have a requirement to segregate the SMC plug-in based on the SAS admin user role. For example, SAS security user can only see (User Manager) plug-in and all other should be disabled and on the other hand, the SAS server Admin &amp;nbsp;user, can see only (server manager)&lt;/P&gt;
&lt;P&gt;Is there any way to achieve this.&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;</description>
    <pubDate>Thu, 03 Dec 2015 12:07:22 GMT</pubDate>
    <dc:creator>Saud</dc:creator>
    <dc:date>2015-12-03T12:07:22Z</dc:date>
    <item>
      <title>How to disable SMC plug-in for selected users</title>
      <link>https://communities.sas.com/t5/Administration-and-Deployment/How-to-disable-SMC-plug-in-for-selected-users/m-p/237571#M3674</link>
      <description>&lt;P&gt;Grating,&lt;/P&gt;
&lt;P&gt;We have a requirement to segregate the SMC plug-in based on the SAS admin user role. For example, SAS security user can only see (User Manager) plug-in and all other should be disabled and on the other hand, the SAS server Admin &amp;nbsp;user, can see only (server manager)&lt;/P&gt;
&lt;P&gt;Is there any way to achieve this.&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Thu, 03 Dec 2015 12:07:22 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Administration-and-Deployment/How-to-disable-SMC-plug-in-for-selected-users/m-p/237571#M3674</guid>
      <dc:creator>Saud</dc:creator>
      <dc:date>2015-12-03T12:07:22Z</dc:date>
    </item>
    <item>
      <title>Re: How to disable SMC plug-in for selected users</title>
      <link>https://communities.sas.com/t5/Administration-and-Deployment/How-to-disable-SMC-plug-in-for-selected-users/m-p/237584#M3675</link>
      <description>&lt;P&gt;There are something called "Capabilities", which lets you restrict functionality in some SAS clients based on user/group membership. Not sure if there is a capability&amp;nbsp;for your specific requirement, but this i definitely&amp;nbsp;your starting point.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="http://support.sas.com/documentation/cdl/en/mcsecug/64770/HTML/default/viewer.htm#n0s6jxhq6hmvb3n107jastiuavn9.htm" target="_blank"&gt;http://support.sas.com/documentation/cdl/en/mcsecug/64770/HTML/default/viewer.htm#n0s6jxhq6hmvb3n107jastiuavn9.htm&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 03 Dec 2015 13:57:20 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Administration-and-Deployment/How-to-disable-SMC-plug-in-for-selected-users/m-p/237584#M3675</guid>
      <dc:creator>LinusH</dc:creator>
      <dc:date>2015-12-03T13:57:20Z</dc:date>
    </item>
    <item>
      <title>Re: How to disable SMC plug-in for selected users</title>
      <link>https://communities.sas.com/t5/Administration-and-Deployment/How-to-disable-SMC-plug-in-for-selected-users/m-p/237669#M3676</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://communities.sas.com/t5/user/viewprofilepage/user-id/11273"&gt;@Saud﻿&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As&amp;nbsp;&lt;a href="https://communities.sas.com/t5/user/viewprofilepage/user-id/13674"&gt;@LinusH﻿&lt;/a&gt;&amp;nbsp;pointed out it is with Role-based capabilities to enable this. We have a step by step description with screen shots to describe how to enable Metacoda Plug-ins in SAS Management Console at&amp;nbsp;&lt;A href="http://platformadmin.com/blogs/paul/2012/02/metacoda-security-plug-ins-role-based-access/" target="_blank"&gt;http://platformadmin.com/blogs/paul/2012/02/metacoda-security-plug-ins-role-based-access/&lt;/A&gt; You may find these visual instructions useful and in step 4 is the capability tab for the SMC plug-in(s) you wish to enable.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind Regards,&lt;/P&gt;
&lt;P&gt;Michelle&lt;/P&gt;</description>
      <pubDate>Thu, 03 Dec 2015 18:54:55 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Administration-and-Deployment/How-to-disable-SMC-plug-in-for-selected-users/m-p/237669#M3676</guid>
      <dc:creator>MichelleHomes</dc:creator>
      <dc:date>2015-12-03T18:54:55Z</dc:date>
    </item>
    <item>
      <title>Re: How to disable SMC plug-in for selected users</title>
      <link>https://communities.sas.com/t5/Administration-and-Deployment/How-to-disable-SMC-plug-in-for-selected-users/m-p/237971#M3688</link>
      <description>&lt;P&gt;The capabilties are for menu-tailoring in some programs like SMC. Your requiement however is looking to come by a requirement normally known as "segregation of duties"&amp;nbsp;&lt;BR /&gt;The do not offer real security segration as that part is not menu tailoring but of autorisation on objects.&lt;BR /&gt;&lt;BR /&gt;The user-management plugin as menu is no problem for normal users as they shoudl be able and maintain their own login settings. (authdomains).&lt;/P&gt;&lt;P&gt;There is another reason users could easily see other&amp;nbsp; users in the metadata. There is an option of distribution output by registered mail-adresses in the SAS-metadata. Using that you must be able to read those&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Something strange there, as user can add uncontrolled autdomains themself but not deleting them again. Seeing groups/logins can have the impact&amp;nbsp;you can also change those. Change is wanted wiht logins&amp;nbsp;not wiht the groupmembership the latter is effectively sayin granting yourself any righst as you like. Wiht 9.1.3 and using DI that granting of groups by users themself was not preventable. &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The normal requiment would be an restricted (not the unrestricted) SAS adminsitrator is the only one responsible for user management (adding/deleting identities) and can be combined wiht granting/deleting group to users.&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 05 Dec 2015 20:15:01 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Administration-and-Deployment/How-to-disable-SMC-plug-in-for-selected-users/m-p/237971#M3688</guid>
      <dc:creator>jakarman</dc:creator>
      <dc:date>2015-12-05T20:15:01Z</dc:date>
    </item>
    <item>
      <title>Re: How to disable SMC plug-in for selected users</title>
      <link>https://communities.sas.com/t5/Administration-and-Deployment/How-to-disable-SMC-plug-in-for-selected-users/m-p/238001#M3693</link>
      <description>&lt;P&gt;Jakarman Thanks a lot. I’ll discover suggested solution which's looks interesting &amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 06 Dec 2015 07:52:40 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Administration-and-Deployment/How-to-disable-SMC-plug-in-for-selected-users/m-p/238001#M3693</guid>
      <dc:creator>Saud</dc:creator>
      <dc:date>2015-12-06T07:52:40Z</dc:date>
    </item>
  </channel>
</rss>

