立即与支持人员聊天
与支持团队交流

Identity Manager 9.1.2 - Identity Management Base Module Administration Guide

Basics for mapping company structures in One Identity Manager Dynamic roles Departments, cost centers, and locations
One Identity Manager users for managing departments, cost centers, and locations Basic information for departments, cost centers, and locations Creating and editing departments Creating and editing cost centers Creating and editing locations Setting up IT operating data for departments, cost centers, and locations Assigning employees, devices, and workdesks to departments, cost centers, and locations Assigning company resources to departments, cost centers, and locations Creating dynamic roles for departments, cost centers, and locations Dynamic roles with incorrectly excluded employees Assign organizations Specifying inheritance exclusion for departments, cost centers, and locations Assigning extended properties to departments, cost centers, and locations Certifying departments, cost centers, and locations Reports about departments, cost centers, and locations
Employee administration
One Identity Manager users for employee administration Basic data for employee main data Employee's central user account Employee's default email address Employee's central password Mapping multiple employee identities Password policies for employees Creating and editing employees Disabling and deleting employees Deleting all employee related data Limited access to One Identity Manager Changing the certification status of employees Assigning company resources to employees Displaying the origin of employees' roles and entitlements Analyzing role memberships and employee assignments Displaying the employees overview Displaying and deleting employees' Webauthn security keys Determining the language for employees Determining employees working hours Manually assigning user accounts to employees Entering calls for employees Assigning extended properties to employees Employee reports
Managing devices and workdesks Managing resources Setting up extended properties Configuration parameters for managing departments, cost centers, and locations Configuration parameters for managing employees Configuration parameters for managing devices and workdesks

Displaying the multi-request resource overview

Use this task to obtain an overview of the most important information about a multi-request resource. For this, take into account the affiliation of the resource to IT Shop structures.

To obtain an overview of a multi-request resource

  1. In the Manager, select the Entitlements > Multi-request resources for IT Shop category.

  2. Select a resource in the result list.

  3. Select the Multi-Request resource overview task.

To obtain an overview of a requestable/unsubscribable resource

  1. In the Manager, select the Entitlements > Multi requestable/unsubscribable resources for IT Shop category.

  2. Select a resource in the result list.

  3. Select the Multi requestable/Unsubscribable resource overview task.

Reports about resources

One Identity Manager makes various reports available containing information about the selected base object and its relations to other One Identity Manager database objects. The following reports are available for resources.

NOTE: Other sections may be available depending on the which modules are installed.

Table 65: Reports about resources
Report Description

Overview of all assignments

This report finds all roles containing employees with the selected resource.

Related topics

Setting up extended properties

Extended properties are meta objects, such as operating codes, cost codes, or cost accounting areas that cannot be mapped directly in One Identity Manager. You can assign extended properties to company resources, hierarchical roles, and employees. They can, for example, be used in the rule conditions of compliance rules.

To assign extended properties

  1. First, set up a property group, under which the extended properties will be grouped.

  2. Set up the extended properties in the property group.

  3. Assign the extended properties to the objects.

    There can be any number of objects of different object types assigned to an extended property at this point.

Detailed information about this topic

One Identity Manager users for managing extended properties

The following users are used for managing extended properties.

Table 66: Users
Users Tasks

Administrators for the IT Shop

Administrators must be assigned to the Request & Fulfillment | IT Shop | Administrators application role.

Users with this application role:

  • Create extended properties for company resources of any type.

One Identity Manager administrators

One Identity Manager administrator and administrative system users Administrative system users are not added to application roles.

One Identity Manager administrators:

  • Create customized permissions groups for application roles for role-based login to administration tools in the Designer as required.

  • Create system users and permissions groups for non role-based login to administration tools in the Designer as required.

  • Enable or disable additional configuration parameters in the Designer as required.

  • Create custom processes in the Designer as required.

  • Create and configure schedules as required.

  • Create and configure password policies as required.

相关文档

The document was helpful.

选择评级

I easily found the information I needed.

选择评级