Define service access by users

You can configure which users and groups can access the services you provide. Sometimes this method of access control is referred to as a service access control list (SACL).

You can create groups for specific services or for all services. By default, all users can connect to all enabled services from all network address ranges.

In addition to the users and groups you create, you can use some special groups like “Local Accounts” or “Network Accounts,” if available.

Define the default access

  1. Select your server in the Server app sidebar, then click Access.

  2. Click the “Allow connections from” pop-up menu, then choose “only some users.”

  3. In the users and groups sheet, enter a user or group name.

  4. To add more users or groups, click Add add, then enter another name.

  5. When you’ve added all the desired users and groups, click OK.

Define custom access

  1. Select your server in the Server app sidebar, then click Access.

  2. Click Add add below the Custom Access list, then select the desired service.

    Some services have more configurable settings in this sheet than just the user access pop-up menu.

  3. Click the “Allow connections from” pop-up menu, then choose “only some users.”

  4. In the users and groups sheet, enter a user or group name.

  5. To add more users or groups, click Add add, then enter another name.

  6. When you’ve added all the desired users and groups, click OK.

See also
Edit custom access