Access control of resources |
Only users having access rights can perform O-MI/O-DF request actions over the data/service tree. |
Group-based rules |
All end-users must belong to one or more groups, for which access rules must be specified. |
Operation-based permission |
A permission (based on the possible O-MI verbs: e.g., read-only or read-write) can be specified for each data/service item and depending on the user group. |
Recursive permission |
Permission is inherited from the parent’s Object as well as overridden for particular children. |
Management interface |
The gateway administrator must be able to manage access rights through a centralized user interface. |