サポートと今すぐチャット
サポートとのチャット

Identity Manager On Demand - Starling Edition Hosted - Web Portal User Guide

General tips and getting started Managing reports Requests
Setting up and configuring request functions Requesting products Managing the Saved for Later list Pending requests Displaying request history Displaying archived requests Resubmitting requests Canceling requests Renewing products with limit validity periods Unsubscribing products Displaying requests Undoing approvals Managing request inquiries directed at you
Attestation
Managing attestation inquiries directed at you Managing attestations Displaying attestation history My attestation cases Undo attestation case approvals Pending attestations
Compliance Managing risk index functions Responsibilities
Managing task delegations Ownerships My responsibilities
Managing my departments Managing my application roles Managing my devices Managing my business roles Managing my identities Managing my cost centers Managing my multi-request resources Managing my multi requestable/unsubscribable resources Managing my resources Managing my software applications Managing my locations Managing my system entitlements Managing my system roles Managing my assignment resources
Managing data
Managing departments Managing user accounts Managing business roles Managing identities Managing cost centers Managing multi-request resources Managing multi requestable/unsubscribable resources Managing resources Managing locations Managing system entitlements Managing system roles Managing assignment resources
Opening other web applications Managing tickets Appendix: Attestation conditions and approval policies from attestation procedures

Analyzing assignments to system roles

You can display how a system role assignment came about by displaying an assignment analysis for the corresponding membership.

To display the assignment analysis for a membership

  1. In the menu bar click Data administration > Data Explorer.

  2. In the Data Explorer navigation, click System roles.

  3. On the System Roles page, click the system role whose memberships you want to display.

  4. On the Edit System Role pane, click the Memberships tab.

  5. Click the membership to display its assignment analysis.

Assigning identities to system roles

You can assign system roles to identities. You do this through requests.

To assign an identity to a system role using a request

  1. In the menu bar click Data administration > Data Explorer.

  2. In the Data Explorer navigation, click System roles.

  3. On the System Roles page, click the system role to which you want to assign an identity.

  4. In the Edit System Role pane, click the Memberships tab.

  5. On the Memberships tab, click Request memberships.

  6. In the Request Memberships pane, next to the identity to which you want to assign the system role, select the check box.

  7. Click Request memberships.

  8. Close the Edit System Role pane.

  9. In the menu bar, click Requests > Shopping cart.

  10. On the Shopping Cart page, click Submit.

    Once the request has been granted approval, the identity is assigned to the system role.

Related topics

Removing identities from my system roles

You can remove identities from system roles by deleting the corresponding memberships.

To remove a system role from an identity

  1. In the menu bar click Data administration > Data Explorer.

  2. In the Data Explorer navigation, click System roles.

  3. On the System Roles page, click the system role that has a membership you want to delete.

  4. In the Edit System Role pane, click the Memberships tab.

  5. Select the check box next to the membership you want to delete.

  6. Click Remove.

  7. (Optional) In the Remove Memberships pane, perform the following:

    • For assignment requests: In the Reason for unsubscribing the membership field, enter why you want to remove the membership.

    • For memberships assigned through dynamic roles: In the Reason for excluding the members field, enter why you want to delete the memberships.

  8. Click Delete memberships.

    TIP: If you only selected direct memberships, confirm the prompt in the Remove Memberships dialog with Yes.

Managing system role entitlements

Identities can be assigned entitlements to different objects, such as, groups, accounts, roles, or applications. Assigning identities to system roles avoids you having to assign entitlements separately to each identity. All a system role's entitlements are automatically assigned to all the identities assigned to the system role.

Detailed information about this topic
関連ドキュメント

The document was helpful.

評価を選択

I easily found the information I needed.

評価を選択