Recommended Accounts and Groups - Brainware Intelligent Capture - Foundation 23.1 - Foundation 23.1 - Brainware - external - Brainware/Brainware-Intelligent-Capture/Foundation-23.1/Brainware-Intelligent-Capture-Installation/Configuring-BIC-Security/Recommended-Accounts-and-Groups - 2024-01-22 - To control access to BIC project data, we recommend a combination of Discretionary Access Control (DAC) and Role-based Access Control (RBAC). The DAC model allows the system administrators to control which users can access objects and resources and the operations they can perform. The RBAC model, also known as non-discretionary model, grants access based on the rights and permissions of roles and groups. The users inherit their rights and permissions from their assigned roles and groups.

Brainware Intelligent Capture Installation

Platform
Brainware
Product
Brainware Intelligent Capture
Release
Foundation 23.1
License

To control access to BIC project data, we recommend a combination of Discretionary Access Control (DAC) and Role-based Access Control (RBAC). The DAC model allows the system administrators to control which users can access objects and resources and the operations they can perform. The RBAC model, also known as non-discretionary model, grants access based on the rights and permissions of roles and groups. The users inherit their rights and permissions from their assigned roles and groups.

The following table lists the groups and accounts recommended for each BIC implementation.

Group / Account Name Purpose
BIC Project Users Global group containing all users designated as BIC project designer or data verifier. Add this group to the BIC Users group.
BIC Admin Global group containing all users designated as a BIC system administrator. Add this group to the BIC group on all RTS servers and RTS remote administration workstations.
BIC Local group used to grant access to local BIC resources. Create this group on all RTS server and RTS remote administration workstations.
BIC Users Local group used to grant access to the project directory. Create this group on the BIC server on which the project directory resides.
BIC RTSsvc Service account used to start the BIC service manager. Add this user to the BIC Admin group and the local administrators group on all BIC servers and remote administration workstations.

The following table lists the groups and accounts, assigned permissions, and the directories and objects on which you need to apply the permissions for each BIC implementation.

Group / Account Name Permission Type: Shared Permission Type: NTFS Directory/Objects Assigned On
Brainware Intelligent Capture Full Control Full Control

C:\Program Files\[company]\[ProjectName]

Brainware Intelligent Capture Users Change Modify

C:\Program Files\[company]\[ProjectName]