Previous Topic: Create a Custom Object Policy with Path PermissionsNext Topic: Permissions Reference


Create a Custom Policy for a Specified Object Type

Create a policy for the type of object to which the restriction applies. Then specify the actions to allow on the selected object type. Choose from the following policy types:

Note: For details on permissions, see the Permissions Reference section.

Follow these steps:

  1. Browse to CA EEM and log in.
  2. Click the Manage Access Policies tab.
  3. Create a custom policy for the object type you want to restrict.
    1. Click the New Access Policy link for one of the following resource types: Agenda, Dataset, Process, Resources, Start Request Form.
    2. Enter a name.
    3. Select Access Control List for Type and click OK to the verification message.
    4. Click Search Identities with Type set to User.
    5. Click Search. Select the user identifier from the displayed list and click the right arrow.
    6. In the Add resource field, type the full path containing the object type that you selected. Click Add.
    7. In the same field, type a forward slash (/) and then type the name of the folder containing the objects to which the user is restricted. Click Add.
    8. Select the permission to grant.
      • Agenda: Agenda_Control (Control). Agenda refers to Schedules.
      • Dataset: Dataset_Inspect (Inspect), Dataset_Modify (Modify).
      • Process: Process_Control (Control), Process_Monitor (Monitor), Process_Start (Start).
      • Resources: Resources_Control
    9. Click Save. Click Close.
  4. (Optional) Add a filter to limit by Environment.
  5. Repeat this procedure for dependent objects. Consider, for example, Datasets. Datasets are meaningful only in the context of another object type. If you selected Datasets, create another policy for, say, Resources.