Restrict permissions for client users
Milestone recommends that administrators specify what users can do in Management Client or XProtect Smart Client.
The following instructions describe how to do this. Additional information is available in the Advanced Security Management white paper (https://www.milestonesys.com/files/White%20papers/XProtect_Corporate_Advanced_Security_Management.pdf).
To restrict client user permissions, follow these steps:
- Open Management Client.
- Expand the Security node, select Roles, and then select the role that the user is associated with.
- On the tabs at the bottom, you can set permissions and restrictions for the role.
By default, all users associated with the Administrator role have unrestricted access to the system. This includes users who are associated with the Administrator role in AD as well as those with the role of administrator on the management server.
Learn more
The following documents provide additional information:
- NIST 800-53 AC-4 Least Privilege
- NIST 800-53 CM-6 Configuration Settings
- NIST 800-53 CM-7 Least Functionality
Was this article helpful?
Thanks for your feedback!