Previous Topic: Create an Application User Group (Role)

Next Topic: Add an Identity to an Existing Policy

Grant a Custom Role Access to CA Enterprise Log Manager

When you create an application user group, or role, be sure to add it to the predefined CALM Application Access policy. Only identities that are explicitly added to this policy can access CA Enterprise Log Manager. Identities can be individual users or members of a user group.

If you encounter a situation where users assigned to a new user group cannot log into the CA Enterprise Log Manager, verify that the Identities of the CALM Application Access policy include this group.

To grant CA Enterprise Log Manager access to a user-defined application user group

  1. Select the Administration tab, click User and Access Management, and then click Access Policies on the left pane.
  2. Click Scoping Policies and select CALM Application Access.
  3. Under Identities, search for the new application group as follows:
    1. For Type, select Application Group.
    2. Click Search Identities.
    3. Leave Name as the attribute and LIKE as the operator. Click Search.

      The name of the new application group appears in the displayed list of identities.

    4. Select the name of the new application group and click the Move button to move the group name to the Selected Identities box.
  4. Click Save.