Installation and Implementation Guide
Chapter 2: Installing Fortify WebInspect Enterprise
selected to the Allowed column, or click >> to move all the Available sensors to the Allowed
column.
5. Change group permissions as follows:
a. In the Security Group Hierarchy of the Roles and Permissions form, select Default Group.
Note: The Default Group is the lowest level in the hierarchy. For a Fortify WebInspect
Enterprise upgrade, the customer might have previously renamed this level from its default
value of Default Group.)
b. In the Group Permissions section, select the Resources tab.
c. In the Group Resources section, in the Object Type drop-down list, select Sensors.
d. Select one or more sensors in the Available column and click > to move the sensors you
selected to the Allowed column, or click >> to move all the Available sensors to the Allowed
column.
About Assigning Administrators and Roles
A role is a named collection of permissions that administrators specify. The Roles and Permissions form
allows you to assign administrators for three hierarchical security levels—Micro Focus Fortify
WebInspect Enterprise System, organization, and group. Each level has at least one administrator.
Administrators at each level can define roles, assign users to roles, and configure other security-related
parameters. By assigning other users to roles, administrators can give them access to the Fortify
WebInspect Enterprise system while limiting the functions they are allowed to perform, considering
security. A user can be a member of more than one role.
Each security level has categories of activities, and some of the categories are used in several levels. The
set of activities in each category varies among categories. You can set the permission for an entire
category or for its individual activities to Allowed, Unassigned, or Denied.
The roles for each security level (system, organization, and group) contain a different set of permission
categories such a Policies, Blackouts, and Application Versions. Each category contains multiple
permissions, such as Can Create, Can View, Can Update, Can Delete, etc.
System Level
Fortify WebInspect Enterprise system administrators have all permissions. Legacy system administrators
from a Fortify WebInspect Enterprise upgrade could also be Fortify WebInspect Enterprise system
administrators. No one else can log on to Fortify WebInspect Enterprise until a Fortify WebInspect
Enterprise system administrator assigns other users to roles.
If Fortify WebInspect Enterprise is integrated with Micro Focus Fortify Software Security Center, the
If Fortify WebInspect Enterprise is not integrated with Fortify Software Security Center and there was
not an existing Fortify WebInspect Enterprise system administrator, the user who ran the initializer was
automatically added as the initial Fortify WebInspect Enterprise system administrator.
Micro Focus Fortify WebInspect Enterprise (21.1.0)
Page 69 of 102