Previous Topic: Examining a New Role

Next Topic: Edit Rule-Based Role

New Rule-Based Role

Rule-Based roles employ a set of organizational, functional and hierarchical based characteristics to define a rule that is then used to automatically assign users with matching characteristics to the role. Using a rule-based role you can scan the entire configuration and identify all users that conform to the role in one single action. Rules-based roles are constructed and added to the configuration through the Rule-Based Role window.

Rules are made up of a series of Field and Value pairs, selected and then set in the Rule group box in the right side of the Rule-base Role window.

To create a rule -based role

  1. Click Edit, New Rule-based Role.

    The Rule-based Role window appears. The Role ID is provided by DNA and is automatically incremented by a value of 1 from the ID given to the previously created role.

  2. Enter a Name for the role in the Name text field.
  3. Fill in the remaining edit fields in the Fields group box in the left part of the window. The operation is identical to that described for creating a regular role.
  4. In the Rule group box select a field type from the Field drop-down.
  5. Select a corresponding value from the Value drop-down.
  6. Click Set.

    The Field and Value pair are placed in the Rule list.

  7. Repeat steps 4-6 to add another Field/Value pair to the rule.
  8. Select the Add Matching Users check box to populate the role with all users that match the rule. The check box is selected by default.
  9. Select the Add Common Resources to populate the role with all resources that match the rule.

    The check box is selected by default.

  10. Click OK to save the Rule-based role.

    The role is added to the configuration file and is listed at the bottom of the configuration file's Role Panel.