Enter the following data for a dynamic role.
Property | Description |
---|---|
Role/Organization |
Role (department, cost center, location, business role, IT Shop node, application node) referenced by the dynamic role. This data is preset with the selected role. |
Object class |
Object class that the dynamic role applies to. Choose between Person, Hardware, and Workdesk. NOTE: The combination of object class and role must be unique. It is not possible that two dynamic roles from the same object class to refer to one role. |
Dynamic role |
Name of the dynamic role. |
Calculation schedule |
Schedule, which triggers cyclical recalculation of the role membership. In the default installation of One Identity Manager, the Dynamic roles check schedule is already defined. All dynamic role memberships are checked using this schedule and recalculation requests are sent to the DBQueue Processor if necessary. Use the Designer to customize schedules or set up new ones to meet your requirements. For more information, see the One Identity Manager Operational Guide. |
Description |
Text field for additional explanation. |
Condition |
Defines which objects of the object class become members of the selected role. For more information, see Tips about conditions for dynamic roles. |
No recalculation of assignments |
Specifies whether to recalculate role memberships. If the option is enabled, role memberships will not be recalculated automatically. Existing role memberships remain as they are. |
For more information about using the WHERE clause wizard and the filter designer, see the One Identity Manager User Guide for One Identity Manager Tools User Interface.