Specifying Authorized Participants
The authorized participants can be specified for a security label value in multiple ways:
• Unspecified
If a UFID is not specified, the label value does not limit access to the objects with the label value applied and it becomes an informative marking.
• UFID Only
If an authorized participant is specified using a UFID, whether the participant (user, user-defined group, or organization) is cleared for access to the objects with the label value applied is indicated by the UFID value.
• WTPrincipalReference
If an authorized participant (user-defined group or organization) is specified using a WTPrincipalReference (used when a principal is stored in database and not in LDAP), specify the following elements:
◦ ClassType: wt.org.WTGroup / wt.org.WTOrganization
◦ OrgName: Specify name of the organization if group is created at organization context. Applicable only for groups created at organization context. The default value is null.
◦ Name: Name of the group or organization.