If Microsoft
Windows Server is a domain controller, you must complete
these tasks to configure users and groups to access IBM® InfoSphere® Information Server. This
configuration is required only for the engine tier computer and is only applicable to the users of
the operating system where the engine tier components are installed.
Procedure
Because you cannot add the built-in authenticated users
group to a group that you create in steps 3 and 2, you
might prefer to skip steps 3 and 2 and
use the authenticated users group directly.
- Log in to Microsoft
Windows Server as an administrator.
- Create a group.
- Click .
- In the Active Directory and Computers window,
click Users in the current domain.
- In the window that opens, click .
- In the New Group window, type DataStage as
the name for the group.
- Leave Group scope as Global and Group
type as Security.
- Click OK
- Configure the server to allow local users and
the DataStage group to log in.
- Click .
- In the Domain Security Policy window,
expand to display the policies.
- In the Domain Security window,
click the Allow log on Locally policy, and
click .
- In the Allow log on Locally Properties window,
click Add User or Group.
- Click Browse.
- In the Select Users, Computers, or Groups window,
click Advanced and then click Find
Now.
- In the search results, click Authenticated
Users and DataStage, and then click OK three
times to return to the Domain Security Policy window.
- In the Domain Security window,
click the Log on as a Batch Job policy, and
click .
- In the Log on as a Batch Job window,
click Add User or Group.
- Click Browse.
- In the Select Users, Computers, or Groups window,
click Advanced and then click Find
Now.
- In the search results, click DataStage and
click OK three times to return to the Domain
Security Policy window.
- Close the Domain Security Policy window.
- Add users to the group.
- In the Users in the current domain window,
click the name of the group that you want to add users to (DataStage),
and click OK. Authenticated users are not available.
- Click .
- In the Properties window, click
the Members tab, and then click Add.
- In the window that opens, click Advanced,
and then click Find Now.
- Click the names of users that you want to add to the
group, and then click OK. Authenticated users
are not available.
- Click OK two times to save your
results and to return to the Active Directory and Computers window.
- Close the Active Directory and Computers window.
- Set permissions for the following folders:
- C:\IBM\InformationServer\Server
- C:\Program Files\MKS Toolkit\fifos
- C:\Windows\%TEMP%
- C:\tmp
Complete the following steps for each of the listed folders.
- Select the folder and click .
- In the Properties window, click
the Security tab, and click Edit.
- In the Permissions window, click Add.
- In the Select Users, Computers, or Groups window,
click Locations.
- In the window that opens, click Advanced,
and then click Find Now.
- Click the name of the group that you want to set permissions
for (DataStage).
- Click OK twice.
- In the Permissions list, select to allow Modify, Read &
execute, List folder contents, Read, and Write Permissions. Click OK.
- If you receive a message to confirm your changes, confirm
by clicking Apply changes to this folder, subfolders and
files.