AutoSys Security Policies

Assumptions:

  • All users, regardless of their authority, can see all job names, starting conditions (jobs and date time conditions) and parent/children information for all jobs in available jobstreams/schedulers.

  • All job run information, including start time/end time/exit code/termination status for all jobs is available to all users, for all jobs in available jobstreams/schedulers.

  • If a user has the authority to read a job in AutoSys, even if they do not have authority to view the properties of the machine that the job is running on, they can still see the machine name as a property of the job.

Access Control

If a job scheduler is configured to be eEM enabled, policy checks will be done before displaying the properties of a job to a user. Specifically, the resource class within AutoSys called as-job will be checked to verify that the user has Read access to that resource. If they have read access, all properties will be available to the user. If they do not have read access, the job names, starting conditions (jobs and date time conditions) and parent/children information for the jobs will be available to the user, but all other AutoSys job properties will be hidden.