SHIELDGate permission system
SHIELDGate operates a permission system divided into users, administrators, super administrators, and master administrators for efficient security management and systematic operation.
Overview of the Permission System
| Permission Level | Key Features | Access Scope |
|---|---|---|
| User | • Web browsing according to the organization's security policy• 할당된 기능 범위 내 서비스 이용• Use of business system | • User Page |
| Administrator | • Conditional policy settings • Log viewing and monitoring | • Admin Page |
| Super Administrator (Security365 Management Center) | • User management and license assignment• 관리자 권한 부여 및 관리• Product management within the organization
• Conditional policy setting | • Security365 Management Center• 사용자 페이지• Admin Page |
| Master Administrator | • System level basic policy settings• 테넌트 관리 및 설정• Dynamic web environment response script management | • Master Admin Page |
Characteristics of the permission system
1. Principle of Separation of Authority
- Each permission is operated with clear separation.
- Access to a higher privilege page is not allowed with lower privileges.
- Clarification of responsibilities and roles by authority
2. User Permission Characteristics
- License-based service access
- Restricted access according to the organization's security policy
- Focus on web browsing and business system usage.
3. Characteristics of Administrator Privileges
- Policy configuration and monitoring permissions
- Log retrieval and analysis function
- Application and Management of Security Policies
4. Features of the Administrator (Security365 Management Center)
- Organization-wide management as an integrated management platform
- Operation of a refined administrator permission system
- Super Administrator: Overall System Management
- Edit Manager: Service View/Edit
- Query Manager: Service Query
- Detailed access control through conditional policies
5. Features of Master Administrator Privileges
- System-level policy management
- Tenant unit management function
- Script-based dynamic policy configuration
- The master admin page is a management page exclusive to SOFTCAMP.
- A dedicated page for system-level policy settings that is inaccessible to customers.
- The master administrator is unable to access the customer company's user/administrator/Security365 management center page, which fundamentally blocks access to customer company information.
- Only basic policy management at the system level is possible, ensuring the data security of the client company.