Previous Topic: ACF2 Accounts

Next Topic: Change Control

Access and Resource Rules and Rule Keys

CA Identity Manager lets you maintain existing access and resource rules created in CA ACF2.

CA Identity Manager protects all resources and data sets by default. Since resources and data sets are evaluated in the same way, CA Identity Manager provides a consistent approach to security regardless of the physical characteristics of the protected resource or data set.

Access rules and resource rules are defined with different rule types. When you expand the rule types, rule keys appear. Access and resource rules are defined as rule keys.

An individual resource or data set exists in CA Identity Manager only as a specific member in a rule key. A rule key can represent one resource or data set, or a group of them.

A rule key protects resources and data sets from access by users other than the owner. When a user tries to access a rule key, CA Identity Manager checks for a rule permission allowing the access. The rule permissions associated with that user determine which resources and data sets that user is authorized to access and the conditions under which access can occur. A user who is not the owner of the resource can access the resource only if the owner or the security administrator authorizes access in a rule permission.

In CA-ACF2, resources and rule keys are only accessed by the following: