Security matrix for Epic EMP template is a table that consists of Epic EMP template grouped with one or more attributes of the Identity, which mostly consist of organizational attributes.
Security matrix for Epic EMP template is a table that consists of Epic EMP template grouped with one or more attributes of the Identity, which mostly consist of organizational attributes.
A mapping must be established between the Person Identity attributes and the Epic EMP template security matrix attributes to group the Epic EMP template with one or more attributes of the Identity.
This section describes the steps to define such mappings in One Identity Manager.
To define the column mappings between the Person Identity and the Security Matrix for Epic EMP template
NOTE: The Epic EMP template security matrix has a maximum of ten Properties that can be mapped with the Person Identity. The security matrix will always apply an AND operation on the combination of properties when assigning the respective Epic EMP template.
Epic EMP templates can be assigned automatically to an Epic user account through SecurityMatrix. To achieve this, SeurityMatrix must be imported into One Identity Manager. On subsequent changes to the security matrix, the updates to the matrix must be imported so that the Epic user account to Epic EMP template assignments are updated.
You can import the SeurityMatrix using these methods
The SecurityMatrix for Epic EMP template can be imported into One Identity Manager using a SecurityMatrix csv file.
The csv file is imported into One Identity Manager using a CSV synchronization project.
This project provides a CSV synchronization workflow which imports the SecurityMatrixEMPTemplate into One Identity Manager.
Epic EMP template assignments are setup in the file named SecurityMatrixEMPTemplate.csv
The names of the columns in this file are
Enter the values mentioned in the following table in the corresponding columns of the csv file.
Columns in the csv file | Values |
Property01 to Property10 |
Full name of the One Identity Manager Organization or Business role. NOTE: Property01 to Property10 represent the different possible One Identity Manager Built-in Organization or Business role or Identity Attributes like Title. Out of box only one business role assignment is supported that is mapped to the value entered in UID_Org in the person table. |
EMP Template |
EMP Template External ID NOTE: Property01 to Property10 represent the different possible One Identity Manager Built-in Organization or Business role or Identity Attributes like Title. |
After the Security Matrix CSV files has been setup, the synchronization project can be created using the procedure below.
To create the synchronization project
NOTE: A sample CSV file can be found in the Miscellaneous folder under the EPC module.
© 2024 One Identity LLC. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center