Previous Topic: PNext Topic: S


R

relationship

A relationship is an object that is associated with the subject of a task. For example, during a Create User task, a user might be assigned to relationship objects such as groups and roles. A relationship object is also called a secondary object.

remove action

A remove action is a user profile change that occurs when a user is removed as a member or administrator of a role. The remove action is defined when a role is created or modified.

role

A role is a method of associating users and rights to CA IdentityMinder or other applications. Roles are made up of tasks. A user who has a role can perform its tasks. Users may have multiple roles. For example, a user may have the roles accountant and employee.

role administrator

A role administrator is a CA IdentityMinder administrator who can add and remove role members or other role administrators. A user becomes a role administrator by meeting conditions in an admin rule for the role or when a role administrator assigns the user as a role administrator.

role-based access control

Role-based access control is a method for granting users access to protected resources based on roles.

role member

A role member is a CA IdentityMinder user who can use a role. A user becomes a role member by meeting conditions in a member rule for the role or when an administrator assigns the role to the user.

role owner

A role owner is a CA IdentityMinder administrator who can modify a role.

root

The root is the location in an LDAP directory that serves as the starting point for the directory—typically, an organization (o) or organizational unit (ou). In the figure, the root of the Engineering User Directory is ou=engineering.

LDAP directory structure