<?xml version="1.0" encoding="ISO-8859-1"?>
<?xml-stylesheet type="text/xsl" href="http://ideajam.net/ideajam/p/ij.nsf/rsstransform.xslt"?>
<rss version="2.0">
<channel>
	<language>en-us</language>
	<lastBuildDate>Tue, 21 May 2013 07:38:36 +0000</lastBuildDate>
	<title>IdeaJam(tm) : Grant access to create databases/replicas on a server IN A DESIGNATED DIRECTORY</title>
	<description>An RSS feed generated by IdeaJam(tm) for Grant access to create databases/replicas on a server IN A DESIGNATED DIRECTORY</description>
	<link>http://ideajam.net/ideajam/p/ij.nsf</link>
	<image>
	    <title>IdeaJam(tm) : Grant access to create databases/replicas on a server IN A DESIGNATED DIRECTORY</title>
	    <url>http://ideajam.net/ideajam/p/ij.nsf</url>
	    <link>http://ideajam.net/ideajam/p/ij.nsf/LogoSquare.gif?OpenImageResource</link>
	</image>
	<item>
		<pubDate>Fri, 25 Jun 2010 21:12:56 +0000</pubDate>
		<title>Domino Server / Security: Grant access to create databases/replicas on a server IN A DESIGNATED DIRECTORY</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; David Hablewitz&lt;br&gt;&lt;b&gt;Tags:&lt;/b&gt;  &lt;a href="http://ideajam.net/IdeaJam/P/ij.nsf/ProductByCategory?openview&amp;restricttocategory=create database"&gt;create database&lt;/a&gt; &lt;br&gt;&lt;b&gt;Idea:&lt;/b&gt; 
&lt;div&gt;Currently the security setting to allow creating databases on a server is an all-or-nothing option.&amp;nbsp; I would like to give users limited ability to create databases on the server in a designated directory.&amp;nbsp; This would allow them to replicate local databases like their archives to the server in a managed way.&amp;nbsp;&lt;/div&gt;
&lt;div&gt;&amp;nbsp;&lt;/div&gt;
&lt;div&gt;&amp;nbsp; Without this ability, the alternative is for the user to give a copy of the file to someone who can create replicas on the server or to set up a server that allows everyone to create replicas, knowing the admin will need to go in and move things around and clean them up.&lt;/div&gt;
&lt;div&gt;&amp;nbsp;&lt;/div&gt;
&lt;div&gt;Access to create databases in a directory should be managed by an ACL of sorts that permits the use of groups.&amp;nbsp; User policies may come into play somewhere here too.&lt;/div&gt;
&lt;div&gt;&amp;nbsp;&lt;/div&gt;
&lt;div&gt;As an addendum based on comments, the user should be able to initiate the replica process and have it require approval in AdminP just like other processes require approval.&lt;/div&gt;&lt;br&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/42462E9560228D6F8625774D006F0C48?OpenDocument</link>
	</item>
	<item>
		<pubDate>Mon, 28 Jun 2010 09:15:28 +0000</pubDate>
		<title>re: Grant access to create databases/replicas on a server IN A DESIGNATED DIRECTORY</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Bill Malchisky&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; Couldn't you just create a group for allowing people to make replicas, then apply that to the respective replicas? &lt;br /&gt; &lt;br /&gt; So, &amp;lt;allow_create_archive_replica&amp;gt; add that to the Server doc, then apply group to the ACL on each replica and template used in respective directory. May not be the most direct way, but it should get the job done, if I am understanding your post correctly.&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/42462E9560228D6F8625774D006F0C48?opendocument&amp;#commentsanc&amp;id=55743A35DC81BB9E86257750002D5C97</link>
	</item>
	<item>
		<pubDate>Mon, 28 Jun 2010 17:13:29 +0000</pubDate>
		<title>re: Grant access to create databases/replicas on a server IN A DESIGNATED DIRECTORY</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; David Hablewitz&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; No, that won't get the job done.&lt;br /&gt;If someone has the rights to create a new replica or Db on a server, that has no impact on where they put it. There is no way to restrict which folder they create the database in. They can even create new folders on the server as they create the database. &lt;br /&gt; &lt;br /&gt; Inevitably they will put it in the wrong place. (then I would need this feature available: { &lt;a href="http://ideajam.net/IdeaJam/P/ij.nsf/0/2BF166D0737FDBA68625771B0065FB46?OpenDocument" rel="nofollow" target="_blank"&gt;Link&lt;/a&gt; } ) &lt;br /&gt;&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/42462E9560228D6F8625774D006F0C48?opendocument&amp;#commentsanc&amp;id=25D454FE68BB466C862577500059200B</link>
	</item>
	<item>
		<pubDate>Tue, 29 Jun 2010 11:10:00 +0000</pubDate>
		<title>re: Grant access to create databases/replicas on a server IN A DESIGNATED DIRECTORY</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Vlad Sh&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; I am opposed because: &lt;br /&gt; 1. Starts the uncontrolled creation of databases / replicas on the server and free space in the server's disk subsystem, designed for the required databases, may be occupied by user. &lt;br /&gt; 2. This increases the vulnerability of the server, because might be possible to run the agents, who are currently (already) can not run.&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/42462E9560228D6F8625774D006F0C48?opendocument&amp;#commentsanc&amp;id=556F36D64C9E14F4862577510037D8F1</link>
	</item>
	<item>
		<pubDate>Tue, 29 Jun 2010 18:27:50 +0000</pubDate>
		<title>re: Grant access to create databases/replicas on a server IN A DESIGNATED DIRECTORY</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; David Hablewitz&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; Vlad, thanks for the comment. To clarify:&lt;br /&gt;&lt;br /&gt;1. I am not sure how more granular restrictions on creating new replicas makes it LESS controlled. I'm talking about restricting where new replicas can be created.&lt;br /&gt;But, to address that, I will adapt my suggestion to include the AdminP approval process. Actually, that should be a separate idea...&lt;br /&gt;&lt;br /&gt;2. This has no effect on users' rights to run agents nor ACLs of databases.&lt;br /&gt;&lt;br /&gt;Ultimately, the problem that needs solving is a more effective means to manage creation of new databases/replicas by end users onto servers. There are times when this is appropriate.&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/42462E9560228D6F8625774D006F0C48?opendocument&amp;#commentsanc&amp;id=894F555428E8168486257751005FEEC1</link>
	</item>
	<item>
		<pubDate>Tue, 29 Jun 2010 19:49:58 +0000</pubDate>
		<title>re: Grant access to create databases/replicas on a server IN A DESIGNATED DIRECTORY</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Vlad Sh&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; David &lt;br /&gt; &lt;br /&gt;2. It happens that the user has remained a local replica of the old agents. It creates a replica on the server and agent (has the right, as signed by the server) starts to work - it can change the data from other databases, it can be adapted to the old model of the data, ie break the new data model. These errors are subtle, more difficult to correct them later...&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/42462E9560228D6F8625774D006F0C48?opendocument&amp;#commentsanc&amp;id=D36FE0017995DAD186257751006773BE</link>
	</item>
	<item>
		<pubDate>Fri, 09 Jul 2010 15:17:29 +0000</pubDate>
		<title>re: Grant access to create databases/replicas on a server IN A DESIGNATED DIRECTORY</title>
		<description>&lt;b&gt;Author:&lt;/b&gt; Peter Presnell&lt;br /&gt;&lt;b&gt;Comment:&lt;/b&gt; I am for ANYTHING that will allow at least some Administrators to consider granting these rights to a server. We are killing off power-users by preventing them from a basic right - to have their databases hosted. For Notes to be successful we need more Notes databases not less.&lt;br /&gt;</description>
		<link>http://ideajam.net/ideajam/p/ij.nsf/0/42462E9560228D6F8625774D006F0C48?opendocument&amp;#commentsanc&amp;id=053FD8AA1833AF0A8625775B004E8155</link>
	</item>
</channel></rss>
