Chat now with support
Chat with Support

Identity Manager 8.1 - Administration Guide for Connecting to SharePoint

Managing SharePoint Environments Setting Up SharePoint Farm Synchronization Basic data for managing a SharePoint environment SharePoint Farms SharePoint Web Applications SharePointSite Collections and Sites SharePoint User accounts SharePoint Roles and Groups
SharePoint Groups SharePoint Roles and Permission Levels
Permissions for SharePoint Web Applications Reports about SharePoint Site Collections Appendix: Configuration parameters for managing a SharePoint environment Appendix: Default Project Template for SharePoint

Assigning SharePoint User Accounts directly to a SharePoint Role

SharePoint roles can be assigned directly or indirectly to user accounts. Indirect assignment can only be used for user authenticated user accounts. Direct assignment can only be used for group and user authenticated user accounts.

User accounts and SharePoint roles must belong to the same site collection.

NOTE: SharePoint roles that reference permission levels and have the option hidden set, cannot be assigned to user accounts.

To assign a SharePoint role directly to user accounts

  1. Select SharePoint | Hierarchical view | <Farm> | Web applications | <web application> | <site collection> | <site> | Roles.
  2. Select the role in the result list.
  3. Select Assign user accounts in the task view.
  4. Assign user accounts in Add assignments.

    - OR -

    Remove user accounts from Remove assignments.

  5. Save the changes.
Related Topics

Assigning SharePoint Groups to SharePoint Roles

In order for SharePoint user groups to obtain permissions for individual websites, assign SharePoint roles to the groups. SharePoint roles and groups must belong to the same site collection.

NOTE: SharePoint Roles that reference permission levels with the Hidden option enabled cannot be assigned to groups.

To assign groups to a SharePoint role

  1. Select SharePoint | Hierarchical view | <Farm> | Web applications | <web application> | <site collection> | <site> | Roles.
  2. Select the role in the result list.
  3. Select Assign groups in the task view.
  4. Assign groups in Add assignments.

    - OR -

    Remove groups from Remove assignments.

  5. Save the changes.
Related Topics

Adding SharePoint Roles to System Roles

Installed modules: System Roles Module

Use this task to add a SharePoint role to system roles. If you assign a system role to employees, all the employees' user authenticated user accounts inherit the SharePoint role.

NOTE: If the SharePoint role references a permission level for which the Hidden option is enabled, system roles cannot be assigned. These SharePoint roles cannot be assigned to user accounts or groups, either directly or indirectly. For more information, see Entering master data for SharePoint permission levels.

NOTE: SharePoint roles with the option Only use in IT Shop set, can only be assigned to system roles that also have this option set. For more information, see theOne Identity Manager System Roles Administration Guide.

To assign a SharePoint role to system roles

  1. Select SharePoint | Hierarchical view | <Farm> | Web applications | <web application> | <site collection> | <site> | Roles.
  2. Select the role in the result list.
  3. Select Assign system roles in the task view.
  4. Assign system roles in Add assignments.

    TIP: In the Remove assignments area, you can remove the assignment of system roles.

    To remove an assignment

    • Select the system role and double click .

  5. Save the changes.
Related Topics

Adding SharePoint Roles to the IT Shop

Once a SharePoint role has been assigned to an IT Shop shelf, it can be requested by the shop customers. To ensure it can be requested, further prerequisites need to be guaranteed.

  • The SharePoint role must be labeled with the option IT Shop.
  • The SharePoint role must be assigned to a service item.
  • The SharePoint role must be also labeled with Only use in IT Shop if the SharePoint role can only be assigned to employees using IT Shop requests. Direct assignment to hierarchical roles may not be possible.

Note: IT Shop administrators can assign SharePoint roles to IT Shop shelves in the case of role-based login. Target system administrators are not authorized to add SharePoint roles in the IT Shop.

To add a SharePoint role to the IT Shop

  1. Select SharePoint | Hierarchical view | <Farm> | Web applications | <web application> | <site collection> | <site> | Roles.
  2. Select the role in the result list.
  3. Select Add to IT Shop.
  4. Assign the IT Shop shelves in Add assignments.
  5. Save the changes.

To remove a SharePoint role from individual IT Shop shelves

  1. Select SharePoint | Hierarchical view | <Farm> | Web applications | <web application> | <site collection> | <site> | Roles.
  2. Select the role in the result list.
  3. Select Add to IT Shop.
  4. Remove the group from the IT Shop shelves in Remove assignments.
  5. Save the changes.

To remove a SharePoint roles from all IT Shop shelves

  1. Select SharePoint | Hierarchical view | <Farm> | Web applications | <web application> | <site collection> | <site> | Roles.
  2. Select the role in the result list.
  3. Select Remove from all shelves (IT Shop).
  4. Confirm the security prompt with Yes.
  5. Click OK.

The SharePoint role is removed from all shelves by the One Identity Manager Service. All requests and assignment requests are canceled along with the SharePoint role as a result.

Detailed information about this topic
  • One Identity Manager IT Shop Administration Guide
Related Topics
Related Documents