Previous Topic: Set Folder OwnershipNext Topic: How to Manage Folders


Create a Policy for Each Content Designer

Once your folder structure is in place and your content designers have user accounts, you can grant folder access to those designers. Folder access specifies the folder in which a user or application group can create and control automation objects. This procedure assumes that you are assigning a separate folder to each content designer and that these folders are directly under the root folder.

A custom policy based on Object lets you grant folder access to specified users or groups. Available access rights to folders include List, Read, Edit, Delete, and Admin. After you create the first policy, you can use that policy as a template for creating other policies.

Follow these steps:

  1. Browse to CA EEM and log in.
  2. Click the Manage Access Policies tab.
  3. Click New Access Policy itpam--NewAccessPolicy--ICO for Object.

    A New Access Policy appears where the Resource Class Name is Object.

  4. Enter a name for this policy that provides folder access to a specific content designer.
  5. Click the Search Identities link and click Search.
  6. Select the name of the content developer and click the right arrow.

    The name appears in the Selected Identities list prefaced by [User].

  7. Enter the path and name of the folder you created for this content designer in the Add resource field and click Add resource.itpam--AddResource--ICO

    Your entry appears in the Resources list

  8. Select each permission to grant to this content designer. For example, grant all actions except Object_Admin.
  9. Click Save.

    The saved policy resembles the following:

    The policy displays all of the data entered in the fields for this access policy using the Object resource class.

  10. Test access.
    1. Log in to CA Process Automation with the credentials for this user.
    2. Verify that the only folder you can use is the one to which you granted access.
  11. Create a policy for each additional content designer in one of the following ways:

Note: To grant read access to all folders, create a policy with Object to which you add all content designers. Select Object_List and Object_Read for the root folder.