The SecurityMatrix for SubTemplate can be imported into OneIdentity Manager using a SecurityMatrix csv file.
The csv file is imported into One Identity Manager using a CSV synchronization project.
Setup Security Matrix Synchronization Project
This project provides a CSV synchronization workflow which imports the SecurityMatrixSubTemplate into One Identity Manager.
SubTemplate assignments are setup in the file named SecurityMatrixSubTemplate.csv.
SecurityMatrixSubTemplate CSV file configuration
The names of the columns in this file are
- Property01
- Property02
- Property03
- Property04
- Property05
- Property06
- Property07
- Property08
- Property09
- Property10
- SubTemplateID
- SubTemplateNumber
Details about the values in the columns in the SubTemplate csv file.
Enter the values mentioned in the following table in the corresponding columns of the csv file
Columns in the csv file | Values |
Property01 to Property10 |
Full name of the One Identity Manager Organization or Business role NOTE: Property01 to Property10 represent the different possible One Identity Manager Built-in Organization or Business role or Identity Attributes like Title. Out of box only one business role assignment is supported that is mapped to the value entered in UID_Org in the person table. |
SubTemplateID |
SubTemplate External ID |
SubTemplateNumber | The SubTemplateNumber and the SubTemplateID form a unique identifier for the Property Columns specified. |
After the Security Matrix CSV files has been setup, the synchronization project can be created using the below steps.
To create a synchronization project
- In the Synchronization Editor, create a new Synchronization Project using the CSV connector.
- Select the SecurityMatrixSubTemplate csv file.
NOTE: A sample CSV file can be found in the Miscellaneous folder under the EPC module
- Set the value of the number of lines in header to 1.
- Select the EPCSecurityMatrix as the template and create the csv project.
- Update the project variable UID_EPCROOT with the UID of the EPCRoot object that has been created for Epic Synchronization project.
- The value can be obtained from the One Identity Manager Object Browser by navigating to the EPCRoot table.
- Save changes to database.