For each admin role, you can create three types of policies:
Define a member rule, which determines the users who receive the role, and scope rules, which determine the objects that role members can manage
Define admin rules, scope rules, and administrator privileges for a role
Define who can modify a role
To optimize performance when CA IdentityMinder evaluates role policies, consider the following:
Copyright © 2013 CA.
All rights reserved.
|
|