MZ�ÿÿ¸@¸º´ Í!¸LÍ!This program cannot be run in DOS mode. $õ–<ß±÷RŒ±÷RŒ±÷RŒU‡­Œ°÷RŒU‡P�°÷RŒRich±÷RŒPELà! ´ àð’@ ȱ8.rdata°@@.rsrcÀ ²@@Ê!¤þ T88Ê!¤þ$ŒŒ8.rdata8x.rdata$zzzdbg P.rsrc$01P3û.rsrc$02 #ò%cMg _`ødñ÷ÕŽ•öAöû�æx¯Ê!¤þp €0€H€`€Ø€ð€!e€n €o8€qP€rh€s€€t˜€u°€vÈ€wà€xø€y€z(€{@€|X€~p€ˆ€€ €�¸€‚Ѐƒè€„€…€†0€‡H€ˆ`€‰x€Š�€‹¨€“À€”Ø€Âð€Ã€  €8€P€h€€€˜€°€È€ à€ ø€ € (€ @€X€ p € �   ° À Ð à ð     0 @ P ` p € �   ° À Ð à ð     0 @ P ` p € �   ° À Ð à ð       0  @  P  ` x)Àä8*îä(2¨äÐ5`ä0:(äX=Xä°@˜äHD€äÈGìä´Hä´IdäLÎäèNšä„Rä S€ä UNäpXbäÔ\Ðä¤^xäbðä d0äNew Authorization StoreMS Shell DlgP-îÿÿ‚&Select the authorization store type: Pö ïÿÿ€&Active Directory or Active Directory Application Mode (ADAM) P1õ ðÿÿ€&XML file PB< Iÿÿ€&Microsoft SQLPU-_ÿÿ‚Select the a&uthorization store schema: Pd  ?ÿÿ€Schema version &1.0 Pšó @ÿÿ€Schema version &2.0PÐ-èÿÿ‚Store &name:€�PÝöéÿÿ�PÝ2õÿÿ€&Locations...Pó-ÿÿ‚&Description:D¡Pý-&êÿÿ�PÍ)2ÿÿ€OKP)2ÿÿ€CancelP" 'ÿÿ‚Requires Windows Server 2003 domain functional level.Ps ÿÿÿÿÿÿ‚A version 1.0 store may be upgraded to version 2.0. A version 1.0 store may be accessed by clients designed for version 2.0, but will not have access to some functionality.Pªÿÿÿÿÿÿ‚A version 2.0 store may not be downgraded to version 1.0. A version 2.0 store may not be accessed by clients designed for version 1.0 but all functionality will be available to clients designed for version 2.0PAÿÿÈÈ€ ü¯New ApplicationMS Shell DlgPîèÿÿ‚&Name:€�Pîéÿÿ�P$îÿÿÿÿ‚&Description:D¡P.îêÿÿ�PKïëÿÿ‚&Version information (optional):D¡PUïìÿÿ�Prîÿÿ‚Note: The application name specified here must be the name that the managed application uses when initializing the Authorization Manager.PˆîKLink WindowMore about <A>Authorization Manager application</A>.P�š2ÿÿ€OKPÚ2ÿÿ€CancelÿÿÈÈ€ ü¶New ScopeMS Shell DlgPîèÿÿ‚&Name:€�Pîéÿÿ�P$îÿÿÿÿ‚&Description:D¡P.îêÿÿ�PTîÿÿ‚Note: Scope names are not arbitrary. You must choose scope names that are meaningful to the application being managed.Pnî#ÿÿ‚For example, file-based applications would typically have scope names based on file paths, whereas Web-based applications would typically have scope names based on URLs.PŽîKLink WindowMore about <A>Authorization Manager scopes</A>.P�¡2ÿÿ€OKPá2ÿÿ€CancelÿÿÈÈ€ ðÉGeneralMS Shell DlgPŒÿÿ‚ÿÿŒP(Áèÿÿ‚&Name:€�P(Áéÿÿ�P($Áÿÿÿÿ‚&Description:D¡P(.Áêÿÿ�P(KÁîÿÿ‚&Store type:€�P(UÁïÿÿ�P(iÁðÿÿ‚Store schema &version:€�P(sÁñÿÿ�P(ŠdAÿÿ€&Upgrade Schema Version...P(žBÿÿ‚ÿÿPFŸž#Dÿÿ‚Upgrading the Authorization Manager Store is a one-way operation that can not be undone.ÿÿÈÈ€ „Open Authorization StoreMS Shell DlgP îÿÿ‚&Select the authorization store type: P ïÿÿ€&Active Directory or Active Directory Application Mode (ADAM) P ðÿÿ€&XML file P*< Iÿÿ€&Microsoft SQLP< èÿÿ‚Store &name:€�PHÔéÿÿ�PßH2õÿÿ€&Browse...P\ KLink WindowMore about <A>Authorization Manager stores</A>.P©o2ÿÿ€OKPßo2ÿÿ€CancelÿÿÈÈ€ üùNew Application GroupMS Shell DlgPîèÿÿ‚&Name:€�Pîéÿÿ�P$îÿÿÿÿ‚&Description:D¡P.îêÿÿ�PNîòÿÿ‚Group type: PZæ óÿÿ€&Basic Application Group Phæ ôÿÿ€&LDAP Query Application Group Puæ 3ÿÿ€Business &Rule Application GroupP†Cÿÿ‚ÿÿD€P †ÕDEÿÿ�PÒîKLink WindowMore about <A>Authorization Manager application groups</A>.P�ä2ÿÿ€OKPÃä2ÿÿ€CancelÿÿÈÈ€ ü÷New Task DefinitionMS Shell DlgPîèÿÿ‚&Name:€�Pîéÿÿ�P$îÿÿÿÿ‚&Description:D¡P.îêÿÿ�PMîõÿÿ‚&The operations and lower-level tasks that define this task: �PWîP÷SysListView32P«Føÿÿ€&Add...PQ«L^ÿÿ€&RemoveP‘¾d2ÿÿ€Authorization R&ule...PÐîKLink WindowMore about <A>Authorization Manager task definition</A>.P�â2ÿÿ€OKPÃâ2ÿÿ€CancelÿÿÀÈ€"¡TasksMS Shell DlgPÆõÿÿ‚&Select the task definitions to add:�P†øSysListView32ÿÿÀÈ€"¡OperationsMS Shell DlgPÆõÿÿ‚&Select the operation definitions to add:�P†øSysListView32ÿÿÈÈ€ ü�New Operation DefinitionMS Shell DlgPîèÿÿ‚&Name:€�Pîéÿÿ�P$îÿÿÿÿ‚&Description:D¡P.îêÿÿ�PKîùÿÿ‚&Operation number:† �PUDëÿÿ�PiîKLink WindowMore about <A>Authorization Manager operation</A>.P�z2ÿÿ€OKPÃz2ÿÿ€CancelÿÿÈÈ€ðÉGeneralMS Shell DlgP�ÿÿ‚ÿÿ�P(Áèÿÿ‚&Name:€�P(Áéÿÿ�P($Áÿÿÿÿ‚&Description:D¡P(.Áêÿÿ�P(KÁëÿÿ‚&Version information (optional):D¡P(UÁìÿÿ�P(tÁ$ÿÿ‚Note: The application name specified here must be the name that the managed application uses when initializing the Authorization Manager.PAÿÿÈÈ€ðÉGeneralMS Shell DlgP�ÿÿ‚ÿÿ�P(Áèÿÿ‚&Name:€�P(Áéÿÿ�P($Áÿÿÿÿ‚&Description:D¡P(.Áêÿÿ�P(TÁÿÿ‚Note: Scope names are not arbitrary. You must choose scope names that are meaningful to the application being managed.P(nÁ#ÿÿ‚For example, file-based applications would typically have scope names based on file paths, whereas Web-based applications would typically have scope names based on URLs.PAÿÿÈÈ€ðÉGeneralMS Shell DlgP‘ÿÿ‚ÿÿ‘P(Áèÿÿ‚&Name:€�P(Áéÿÿ�P($Áÿÿÿÿ‚&Description:D¡P(.Áêÿÿ�ÿÿÈÈ€ðÉGeneralMS Shell DlgP’ÿÿ‚ÿÿ’P(Áèÿÿ‚&Name:€�P(Áéÿÿ�P(#Áÿÿÿÿ‚&Description:D¡P(-Áêÿÿ�P(IÁùÿÿ‚&Operation number:† �P(SDëÿÿ�ÿÿÈÈ€ ðÉGeneralMS Shell DlgP(Áèÿÿ‚&Name:€�P(Áéÿÿ�P($Áÿÿÿÿ‚&Description:D¡P(.Áêÿÿ�P(NÁòÿÿ‚&Group type:€�P(XÁþÿÿ�@.ÿÿ‚ÿÿ§@/ÿÿ‚ÿÿ¨@(mQ4ÿÿ€Business Rule &Script...@(~5ÿÿ‚ÿÿ@>«C6ÿÿ‚This business rule application group does not have a script loaded. Please load a script that defines the members of this group.@0ÿÿ‚ÿÿÄPAÿÿÈÈ€ðÉLimitsMS Shell DlgP¬)ÿÿ‚Authorization rules: P‡ +ÿÿ€&Disable P� *ÿÿ€Enable with &no timeout value P+ž ,ÿÿ€Enable with specified &timeout valueP?âÿÿ‚Aut&horization rule timeout:‚ �PJHÿÿ�PWLˆÿÿÿÿÿÿ‚(milliseconds)P\âÿÿ‚&Maximum number of cached authorization rules:‚ �PhHÿÿ�Pxâÿÿ‚&LDAP query timeout:‚ �P„Hÿÿÿ�PW†ˆÿÿÿÿÿÿ‚(milliseconds)P˜Zÿÿ€&Use Default ValuesP¯âLLink WindowMore about <A>Authorization Manager store limits</A>.PAÿÿÈÈ€ðÉDefinitionMS Shell DlgPâõÿÿ‚&The operations and lower-level tasks that define this task: �Pâˆ÷SysListView32PŸFøÿÿ€A&dd...PQŸF^ÿÿ€&RemoveP…´d2ÿÿ€A&uthorization Rule...ÿÿÈÈ€ ü÷New Role DefinitionMS Shell DlgPîèÿÿ‚&Name:€�Pîéÿÿ�P$îÿÿÿÿ‚&Description:D¡P.îêÿÿ�PMîõÿÿ‚&The tasks and lower-level roles that define this role: �PWîP÷SysListView32P«Føÿÿ€&Add...PQ«F^ÿÿ€&RemoveP‘¾d2ÿÿ€A&uthorization Rule...PÐîKLink WindowMore about <A>Authorization Manager role definition</A>.P�â2ÿÿ€OKPÃâ2ÿÿ€CancelÿÿÈÈ€ðÚMembersMS Shell DlgPâõÿÿ‚&Users and groups that are members of this group: �PâŒSysListView32P£E^ÿÿ€&RemoveP¸â;ÿÿ‚Select additional &members from:!PÄ´*9ÿÿ…PÀÄ):ÿÿ€&Select...ÿÿÀÈ€"¡Add GroupsMS Shell DlgPÆõÿÿ‚&Select the groups to add:�PuøSysListView32P³Œ2ÿÿ€OKPéŒ2ÿÿ€CancelÿÿÈÈ€ðÚExclusionsMS Shell DlgPâõÿÿ‚&Users and groups that are excluded from this group: �PâŒSysListView32P£E^ÿÿ€&RemoveP¸â>ÿÿ‚Select additional &exclusions from:!PÄ´*9ÿÿ…PÀÄ):ÿÿ€&Select...ÿÿÈÈ€ðÉQueryMS Shell DlgPâ ÿÿ‚The &LDAP query that defines the members of this group:D¡Pâªÿÿ�@œF ÿÿ€Define &Query...@Z™F%ÿÿ€&Check SyntaxPAÿÿÈÈ€ðÉSecurityMS Shell DlgPâÿÿ‚Au&thorization Manager user role:!Pâ ÿÿ…P#âÿÿÿÿÿÿ‚&Users and groups that are assigned to this role: �P-âoSysListView32P 2 ÿÿ€A&dd...P= 2^ÿÿ€&RemoveP²âMLink WindowMore about <A>Authorization Manager security</A>.PAÿÿÀÈ€"¡Roles MS Shell DlgPÆõÿÿ‚&Select the role definitions to add:�P†øSysListView32ÿÿÈÈ€ðÉDefinitionMS Shell DlgPâõÿÿ‚&The tasks and lower-level roles that define this role: �Pâˆ÷SysListView32PŸFøÿÿ€A&dd...PQŸF^ÿÿ€&RemoveP…´d2ÿÿ€A&uthorization Rule...ÿÿÀÈ€ðÉAuditingMS Shell DlgPâÿÿ‚Enable:Pâ ÿÿ€&Runtime application initialization auditingP!â ÿÿ€&Authorization store change auditingP-â(ÿÿ‚P9â0Link WindowMore about <A>Authorization Manager auditing</A>.PAÿÿÀÈ€ áAuthorization RuleMS Shell DlgPnüÿÿ‚&Script path:€�PxÆÿÿ�PÑx2õÿÿ€&Browse...PŒüÿÿ‚Script type: P˜ñ ÿÿ€&VBScript P¤ñ ÿÿ€&JScriptPµaÿÿ€&Reload Rule into StorePlµaÿÿ€&Clear Rule from StoreP›Ì2ÿÿ€OKPÑÌ2ÿÿ€CancelPüÿÿ‚Scri&pt source code:ıPüXÿÿ�ÿÿÈÈ€üŠOptionsMS Shell DlgPî "ÿÿ‚Authorization Manager &mode: PÜ ÿÿ€&Developer mode P:Ü !ÿÿ€&Administrator modePÙÿÿ‚In developer mode, users can create, deploy, and maintain applications. Users have unrestricted access to all features.PFÙ #ÿÿ‚In administrator mode, users can deploy and maintain applications. Users have access to all features except they cannot create new applications and define operations.P�u2ÿÿ€OKPÃu2ÿÿ€CancelÿÿÈÈ€ðÉGeneralMS Shell DlgP�ÿÿ‚ÿÿ�P(Áèÿÿ‚&Name:€�P(Áéÿÿ�P($Áÿÿÿÿ‚&Description:D¡P(.Áêÿÿ�P(QN$ÿÿ€&Show DefinitionÿÿÈÈ€"¡Add RoleMS Shell DlgPÆõÿÿ‚&Select the role definitions to add: �PuøSysListView32P³Œ2ÿÿ€OKPéŒ2ÿÿ€CancelÿÿÀÈ€ðÉRole DefinitionMS Shell DlgP‚´2ÿÿ€OKP·´2ÿÿ€CancelPâõÿÿ‚&The operations and tasks that define this role: �Pâˆ&SysListView32PŸF ÿÿ€&Add...PQŸF^ÿÿ€&RemovePAÿÿÈÈ€³Open Authorization StoreMS Shell DlgP ž2ÿÿ€OKPÙž2ÿÿ€CancelPÆõÿÿ‚&Select Authorization store to open: ˆ�P†øSysListView32ÿÿÈÈ€ðÉGeneralMS Shell DlgP©ÿÿ‚ÿÿ©P(Áèÿÿ‚&Name:€�P(Áéÿÿ�P($Áÿÿÿÿ‚&Description:D¡P(.Áêÿÿ�Authorization ManagerrThe Authorization Manager allows you to set role-based permissions for Authorization Manager-enabled applications.K&Open Authorization Store... Opens an existing Authorization Manager store.F&New Authorization Store... Creates a new Authorization Manager store.NameType Description No Authorization Stores Selected4The Authorization Manager snap-in allows you to set role-based permissions for applications that have been Authorization Manager enabled. To use the Authorization Manager, you must first create an authorization store (if you are an application developer) or open an existing authorization store (if you are an administrator). To open an existing authorization store, on the Action menu, click Open Authorization Store. To create a new authorization store, on the Action menu, click New Authorization Store while in developer mode. For more information, press F1.K&New Application... Creates a new Authorization Manager application object.Business Rule Application Group)&New Scope... Creates a new scope object. %s PropertiesPAGeneralActive DirectoryXML fileAuthorization Store ApplicationBasic Application GroupLDAP Query Application GroupRole AssignmentTask ContainerScopeApplication GroupGroups ContainerApplication groupsP&New Application Group... Creates a new Authorization Manager application group.PATask Definitions ContainerCTasks are a set of operations needed to perform a basic user actionRole Assignments Container"Users and groups assigned to rolesRole Definition...=&New Task Definition... Creates a new task definition object. Operation Operation Definitions Container+Definitions of roles, tasks, and operationsG&New Operation Definition... Creates a new operation definition object. Container>Operations are individual functions defined by the applicationPAOperation DefinitionsQAn authorization store with the name %1 already exists. Specify a different name.OAn authorization store name cannot contain any of the following characters: %1.IAn application with the name %1 already exists. Specify a different name.GAn application name cannot contain any of the following characters: %1.CAn scope with the name %1 already exists. Specify a different name.3A scope name can contain only printable characters.BA group with the name %1 already exists. Specify a different name.@A group name cannot contain any of the following characters: %1.AA task with the name %1 already exists. Specify a different name.?A task name cannot contain any of the following characters: %1.AA role with the name %1 already exists. Specify a different name.?A role name cannot contain any of the following characters: %1. Business RuleAssign Users and Groups.<The Business Rule Application Group option is unavailable because the current Authorization Manager Store is a v1.0 store and does not support this kind of Application Group. To Upgrade the store, select the store node in the navigation tree, select the Action > Properties menu item and click the Upgrade button.[This action can not be undone because a store that uses the version 2.0 schema can not be downgraded to version 1.0. Clients designed for the version 1.0 schema can not access stores that use the version 2.0 schema, however the version 2.0 schema is required for access to functionality that depend on the schema changes. Do you want to continue?Microsoft SQL Server database+Active Directory in Application Mode (ADAM)GAn operation with the name %1 already exists. Specify a different name.EAn operation name cannot contain any of the following characters: %1.:Cannot create a new %2. The following problem occurred: %1hCannot find %1. Enter a different store name or click Browse to view the available authorization stores.GCannot open the authorization store. The following problem occurred: %1ŸThere are no operations defined. To define a new operation, right-click on the Operation Definitions container, and click the New Operation Definition command.‹There are no tasks defined. To define a new task, right-click on the Task Definitions container, and click the New Task Definition command.-No name is given. Enter a name and try again.IAn operation number is required. Enter an operation number and try again.SAn LDAP query timeout is required. Enter an LDAP query timeout value and try again.cAn authorization rule timeout is required. Enter an authorization rule timeout value and try again.‹A maximum number of cached authorization rules value is required. Enter a maximum number of cached authorization rules value and try again.…The input value %1!u! is less than the minimum value of %2!u! for the authorization rule timeout. Enter a higher value and try again.Role Definitions Container>Roles are a set of tasks needed to perform a user job functionPA=&New Role Definition... Creates a new role definition object.1Cannot add %2. The following problem occurred: %1Role DefinitionAccount deleted (%1)Account unknown (%1)%1(%2)Account invalid (%1) AdministratorReader‰There are no roles defined. To define a new role, right-click on a Role Definitions container, and click the New Role Definition command.wThere are no groups defined. To define a new group, right-click on a Groups container, and click the New Group command. Where DefinedaAn operation with the number %1 already exists. Enter a different operation number and try again.KSystem could not perform this operation. The following problem occurred: %14New &Role Assignment... Selects the roles to assign.ACannot create the role object. The following problem occurred: %18From &Authorization Manager& From Authorization Manager.FFrom &Windows and Active Directory& From Windows and Active Directory.&Are you sure you want to delete %1 %2?”The selected users and groups were assigned this role from a higher level object. They can be removed only from the object where they were assigned.ÍOne or more of the selected users and groups were assigned this role at higher level object. They can be removed only from the object where they were assigned. Do you want to remove other selected entries?Open Authorization Store&New Authorization StoreSelect Authorization RuleMThe authorization rule is longer than the maximum length of %1!u! characters.Cannot open file %1.4Cannot read file. The following problem occurred: %14Cannot delete %2. The following problem occurred: %1\%1 or one of its children has property sheets open. Close the property sheets and try again.BCannot enumerate child objects. The following problem occurred: %1CCannot save one or more changes. The following problem occurred: %11Cannot add %2. The following problem occurred: %1PA4&Select a container for the new authorization store.nCannot save %1 because it contains a syntax error. Launch the rule editor, correct the problem, and try again.LA role definition with the name %1 already exists. Specify a different name.2&Assign Users and Groups Assigns Users and Groups.3O&ptions... Displays Authorization Manager options.GroupUserUnknownComputerAdd Definition^The input value %1 is greater than the maximum value of %2. Enter a lower value and try again.}The input value %1!u! is less than the minimum value of %2!u! for the LDAP query timeout. Enter a higher value and try again.‰Cannot display properties for %1. This object may have been deleted. To refresh the current selection, on the Action menu, click Refresh.DCannot display properties for %2. The following problem occurred: %15Are you sure you want to delete the selected objects?MCannot delete %2. The following problem occurred: %1 Do you want to continue?PApAn Active Directory store name must be in the following format: CN=myStore,CN=Program Data,DN=nwTraders,DN=com.Operation Failed.CThere are no Active Directory Authorization Manager stores defined.}The input store location does not exist. Enter a different store location or click Locations to view the available locations.Delegated UserLA file or folder with the name %1 already exists. Specify a different name. %s Definition PropertiesGThe input store name has an incorrect format. Specify a different name.Cannot access Active Directory.C(already enabled at the authorization store and application levels)2(already enabled at the authorization store level)*(already enabled at the application level)/&Close Closes the selected authorization store.sCannot create a new authorization store. The domain controller must be in Windows Server 2003 functionality level.XCannot find %1. Enter a different rule name or click Browse to view the available rules.qThe file %1 is empty. Enter a different authorization rule file name or click Browse to view the available rules.PACannot read file %1.1&Runtime client context and access check auditing no timeoutÉ%1 cannot be delegated because it has roles and tasks defined with authorization rules. To delegate this scope, you must remove the authorization rules from all role and task definitions in this scope.`Delegating %1 prohibits role and task definitions in this scope from having authorization rules.xSince the %1 scope has been delegated, you cannot set authorization rules on role or task definitions within this scope.Windows and Active DirectoryAuthorization ManageroAll rules (*.vbs; *.js)|*.vbs;*.js|VBScript files (*.vbs)|*.vbs|JScript files (*.js)|*.js|All files (*.*)|*.*||¢The specified authorization store does not have a valid format. The valid formats are msxml://filepath or msldap://CN=myStore,CN=Program Data,DN=nwTraders,DN=com.€Cannot find authorization store %1. To open an existing authorization store, on the Action menu, click Open Authorization Store.1Rel&oad Reloads the selected authorization store.CTo generate audits, the computer running the Authorization Manager application must have the Audit Object Access audit policy enabled. Also, the account the Authorization Manger application runs as must have the Generate Security Audits privilege. For additional information, click the Authorization Manager Auditing link.DAn object with the name %1 already exists. Specify a different name.?A role name cannot contain any of the following characters: %1.New Authorization Store#The folder you picked is not valid.PA From %1 ...Microsoft Corporation˜4VS_VERSION_INFO½ïþ |O |O?øStringFileInfoÔ040904B0LCompanyNameMicrosoft CorporationTFileDescriptionAuthorization Managern'FileVersion10.0.20348.5139 (WinBuild.160101.0800)0InternalNameAuthMan€.LegalCopyright© Microsoft Corporation. All rights reserved.JOriginalFilenameazroleui.dll.muij%ProductNameMicrosoft® Windows® Operating SystemDProductVersion10.0.20348.5139DVarFileInfo$Translation °PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGX