Creating a new local user

If you have a small user base and don't need an authentication provider such as Active Directory or an LDAP server, create a local account for each user that needs access to the IBM® QRadar® Network Packet Capture appliance.

Before you begin

Log in to the QRadar Network Packet Capture appliance as an administrator.

The QRadar Network Packet Capture appliance also supports full user authentication as specified by configuring Microsoft® Active Directory or LDAP services, see Configuring Active Directory or an LDAP server for user authentication.

Procedure

  1. In QRadar Network Packet Capture, click the ADMIN tab.
  2. Go to the ACCOUNTS widget, and enter values in the user and password fields for the new user.
  3. Select a user level:
    • For administrators who need the highest level of access and can change any configuration, select Admin.
    • For users who need to use QRadar Network Packet Capture for operational uses, like searches and queries, select Operator.
    • For users who only need to monitor results from the QRadar Network Packet Capture appliance, select Monitor.
    Use the following information to determine the user level that you require:
    Activity Monitor level Operator level Admin level
    Get statistics information from device X X X
    Get information about the current group setup X X X
    Start a search and query of data from the appliance   X X
    Cancel an ongoing search   X X
    Change any configuration for the device including add or remove a user account     X
    Reset/clear the statistics information of the appliance     X
    Get support information from the device including logs and support archive     X
    Start and stop capturing of data     X
    Change group setup     X
  4. Click Add account.