26
Identity Manager 3.6.1 Driver for Role-Based Entitlements: Implementation Guide
no
vd
ocx
(e
n)
17
Sep
te
m
be
r 20
09
Add Object:
Use this option to browse for and select the objects that you want to make the
policy a trustee of.
Rights to Selected Objects:
Click an object in the Object Name list to view the policy’s rights
to the object. You can add or remove rights by selecting or deselecting the desired rights. The
Inherit check box determines whether the rights flow down in the tree. For example, if you are
assigning rights to a container object, and you want the entitlement policy to have the same
rights to the objects and subcontainers that are below that container, select the
Inherit
check
box.
Add Property:
In addition to doing a global assignment of rights to all properties ([All
Attributes Rights]), you can assign rights to specific properties. This lets you limit rights to
some properties and expand rights to others. To add a property, click
Add Property
to browse
for and select the desired property. After the property is added to the Rights to Selected Objects
list, make the assigned rights modifications that you want.
Remove Object or Property:
Click the button to remove an object from the Object Name
list or a property from the Rights to Selected Object list.
11
On the
Step 6 of 6: Entitlement Policy Summary
page, review the policy information, then click
Finish
to create the policy and add it to the Entitlement Policy List.
12
Click
Restart
to start the Entitlements Service driver.
After the driver starts, it evaluates the new policy (and all other policies in the list) and grants
the appropriate entitlements to the policy members.