The SetJAMSAccessControl Job can be found in the JAMS Folder, within the Definitions shortcut.
What it Does:
The SetJAMSAccessControl Job sets the recommended Access Control security in JAMS. Access Control security can be found in the Access Control shortcut.
How it works:
When the SetJAMSAccessControl Job runs, it sets the Access Control security to the recommended settings for each group. An overview of the recommended group security settings and options can be found in the JAMS Documentation.
WARNING: SetJAMSAccessControl will wipe out existing Access Control security settings and replace them with the values set in the SetJAMSAccessControl Job each time the Job is run.
How to configure this Job:
- Open the JAMS Folder and view the Job Definitions.
- Right-click on the SetJAMSAccessControl Job and select Properties from the drop-down list.
- If custom security settings should be set, open the Source tab and configure the security settings for the relevant group on the given object. In the example below, the Folder Delete option for the Developers group is selected. Removing this option and then running the SetJAMSAccessControl Job would restrict users in the Developers group from deleting Folders.
- Select the Parameters Tab to view the Parameters that should be set before running the Job. While Parameters may also be set in the Submit Window upon submission of the Job, users are recommended to set the Default Parameter Values on the Job to ensure accuracy.
- Set the Parameter default values as outlined:
- DomainName – Set to the relevant Domain. In the example, the domain is WidgetCo.
- AdminGroupName – Enter the Active Directory name of the Group that should have full access to all of JAMS. No security restrictions will be put on this group. Use only the group name, as the domain is already set.
- DeveloperGroupName – Enter the Active Directory name of the Developers Group. Use only the group name, as the domain is already set.
- SubmitterGroupName - Enter the Active Directory name of the Submitter Group. Use only the group name, as the domain is already set.
- InquirerGroupName - Enter the Active Directory name of the Inquirer Group. Use only the group name, as the domain is already set.