Profiles govern access to the Communication Manager SAT and to the Communication Manager System Management Interface (SMI). A profile consists of a numeric identifier and that profile’s access permissions. Administration for SAT profiles and web profiles are separate processes.
Communication Manager SAT profiles define access to Communication Manager SAT screens. SAT profile data is maintained within Communication Manager.
Communication Manager web profiles define access to Web pages in the web interface. Web profile data is maintained in a Linux file.
SAT profile objects (SAT screens) and web profile objects (Web pages) have no objects in common.
A profile is identified by a number 0-69, which corresponds to a Linux group. Both Communication Manager and the web interface dedicate fixed permissions to profiles 0-19, which may not be deleted or modified.
When a profile is created, the profile is assigned to a Linux group whose number is Communication Manager_PROFILE_BASE or greater. Communication Manager_PROFILE_BASE defaults to 10,000 for both Communication Manager and the Web. The value can be changed through the Web pages.
Profile numbers are based on the login’s Linux group number, minus the Communication Manager_PROFILE_BASE. For example, user dadmin belongs to Linux group 10,002. The profile number for dadmin is 2 (10002 minus 10000).
When a Linux group is assigned to a login, the login is assigned the profile associated with that Linux group. For example, when Linux group 10,002 is assigned to the dadmin login, dadmin is automatically assigned user profile 2.
Communication Manager maintains up to 70 profiles.
A login may be assigned exactly zero or one user profile. A login may not be assigned to more than one user profile. If a login is not assigned group membership in the range 10,000 to 10,069, that login will have no access to the SAT or the server Web pages. Multiple logins may be assigned to the same profile. The starting value of 10,000 may be changed through the Web Access Mask page.
To access Communication Manager functions according to job functions, create and modify profiles. Examples of such profiles are:
Security Auditor profile, with read-only access to logs and audit files.
Security profile, with read/write access to create other administrator logins, create and modify profiles.
Telephony Application Administrator profile, with read/write access to application configuration, such as trunks.
Backup administrator profile, with the ability to perform only backups.
Telephone Provisioning profile, with ability to add/change/delete a certain range of telephone extensions.
ACD Administrator profile, with the ability to modify call center vectors.
Checker profiles, with read-only access, able to only view certain changes.