
104
Novell eDirectory 8.8 Administration Guide
n
ov
do
cx (e
n)
11
Ju
ly 20
08
Role-Based Services allows administrators to focus the user on a specified set of functions, called
tasks
, and objects as determined by the grouping of tasks called
roles
. What users see when they
access iManager is based on their role assignments in eDirectory. Only the tasks assigned to that
user are displayed. The user does not need to browse the tree to find an object to administer; the
iManager plug-in for that task presents the necessary tools and interface to perform the task.
You can assign multiple roles to a single user. You can also assign the same role to multiple users.
Role-Based Services is represented by objects defined in eDirectory. The base eDirectory schema
gets extended during the iManager installation. The RBS object types are listed in the following
table.
Object
Description
rbsCollection
A container object that holds all RBS Role and Module objects.
rbsCollection objects are the topmost containers for all RBS objects. A
tree can have any number of rbsCollection objects. These objects have
“owners,” which are users who have management rights over the
collection.
rbsCollection objects can be created in any of the following containers:
Country
Domain
Locality
Organization
Organizational Unit
rbsRole
A container object that specifies the tasks that users (members) are
authorized to perform. Defining a role includes creating an rbsRole object
and specifying the tasks that the role can perform.
Role members can be Users, Groups, Organizations, or Organizational
Units, and they are associated to a role in a specific scope of the tree.
The rbsTask and rbsBook objects are assigned to rbsRole objects.
rbsRole objects can be created only in rbsCollection containers.
rbsModule
A container object that holds rbsTask and rbsBook objects. rbsModule
objects have a module name attribute that represents the name of the
product that defines the tasks or books (for example, eDirectory
Maintenance Utilities, NMAS Management, or Novell Certificate Server
Access).
rbsModule objects can be created only in rbsCollection containers.
rbsTask
A leaf object that represents a specific function, such as resetting login
passwords.
rbsTask objects are located only in rbsModule containers.
rbsBook
A leaf object that containing a list of pages assigned to the book. An
rbsBook can be assigned to one or more Roles and to one or more Object
class types.
rbsBook objects are located only in rbsModule containers.
Содержание EDIRECTORY 8.8 SP3
Страница 4: ...novdocx en 11 July 2008...
Страница 72: ...72 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 120: ...120 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 132: ...132 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 190: ...190 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 238: ...238 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 262: ...262 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 288: ...288 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 320: ...320 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 348: ...348 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 388: ...388 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 492: ...492 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 586: ...586 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 599: ...The eDirectory Management Toolbox 599 novdocx en 11 July 2008 Click Help for details...
Страница 600: ...600 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 614: ...614 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...