SECURITY


Controlling creation of databases, replicas, and templates
To manage available disk space, control which users and servers are allowed to create databases and replicas on a server. If your system uses multiple Domino Directories, IBM® Lotus® Domino™ searches only the first Domino Directory specified in the Names setting in the NOTES.INI file.

If the server allows a user to create database replicas, but a particular database ACL prevents it, the user cannot create a replica for that database.

Tip Create a group named "Replica Makers" that lists the names of all people who can create replicas on servers. Enter the group name "Replica Makers" in the "Create replica databases" field in each Server document in the Domino Directory.

1. From the Domino Administrator, click Configuration, and open the Server document.

2. Click the Security tab.

3. In the Server Access section, complete one or more of these fields, and then save the document:
FieldAction
Create databases and templatesEnter any of these:
  • Names of specific servers, users, and groups.
  • An asterisk (*) followed by a certificate name -- for example, */Sales/East/Acme -- to allow all users certified by a particular certifier to create databases.
  • An asterisk (*) followed by a view name -- for example, *($Users) -- to allow all names that appear in a specific view in the Domino Directory to create databases. Access time is quicker if you specify a group name rather than a view name.
The default value for this field is blank, which means that all users can create databases on the server.

Separate multiple names with commas or semicolons.

Create new replicas Enter any of these:
  • Names of specific servers, users, and groups.
  • An asterisk (*) followed by a certificate name -- for example, */Sales/East/Acme -- to allow all users certified by a particular certifier to create replicas.
  • An asterisk (*) followed by a view name -- for example, *($Users) -- to allow all names that appear in a specific view in the Domino Directory to create replicas. Access time is quicker if you specify a group name rather than a view name.
Note Servers, users, and groups who cannot create databases on the server (see above) cannot create new replicas.

The default value for this field is blank, which means that no one can create new replicas.

Separate multiple names with commas or semicolons.

Create master templatesEnter any of these:
  • Names of specific servers, users, and groups.
  • An asterisk (*) followed by a certificate name -- for example, */Sales/East/Acme -- to allow all users certified by a particular certifier to create templates.
  • An asterisk (*) followed by a view name -- for example, *($Users) -- to allow all names that appear in a specific view in the Domino Directory to create replicas. Access time is quicker if you specify a group name rather than a view name.
Note Servers, users, and groups who cannot create new databases or replicas on the server (see above) cannot create or update templates.

The default for this field is blank, which means only administrators can create master database templates on the server.

Separate multiple names with commas or semicolons.

For information on creating groups, see Creating and modifying groups.

See also