Enable application rights

Use this group policy to enable SSH application rights. Depending upon the user’s role settings, this allows applications to grant rights such as password log in and allow normal shell. You configure and assign rights in zone manager.

This feature is supported in Centrify OpenSSH 4.5.4 or later. Setting this property on an unsupported version renders OpenSSH unable to start.

This group policy adds the following ServiceAuthLocation parameter to the /etc/centrifydc/ssh/sshd_config file for all computers to which the group policy object applies. It sets the path to the dzsshchk command which verifies the rights for users when they log in with SSH:

ServiceAuthLocation /usr/share/centrifydc/libexec/dzsshchk

This policy is disabled by default