Eligibility rules allow you to restrict who can and cannot see and shop for IT resources that you have enabled for the IT Shop. In this article, we demonstrate adding and removing eligibility to and from a group.
Walkthrough
Add eligibility
On the navbar of the EmpowerID Web interface, expand Identity Administration and click Groups.
From the All Groups tab, search for the group for which you want to add eligibility.
Click the Logon Name link for the group.
On the Group Details page that appears, select the Advanced tab and then click the Eligibility sub-tab near the bottom of the page. You should see four eligibility rules.
Eligibility rules:Resources Members Eligible to Request (As Actor) – Allows you to specify the resources that members of the group are eligible to request from the IT Shop.
Resources Members May Not Request (As Actor) – Allows you to specify the resources that members of the group are excluded from requesting. Resources added here will not be visible to any members of the group, even if they are eligible to request those resources by virtue of another assignment.
Who is Eligible to Request (As Resource) – Allows you to specify the actors eligible to shop for access to the group, as well as the eligibility type for each of those actors.
Who is Excluded from Requesting (As Resource) – Allows you to specify the actors not eligible to shop for access to the group.
Expand the accordion corresponding to the type of eligibility you want to assign or restrict and follow the steps outlined for that eligibility rule.
Expand | ||
---|---|---|
| ||
Add this rule when you want to give members of the group the ability to shop for access to the resources you add here.
|
Expand | ||
---|---|---|
| ||
Add this rule when you want to explicitly restrict members of the group from having access to certain resources. Keep in mind that users restricted from resources will not be able to request those resources even if they have another assignment that that grants them eligibility.
|
Insert excerpt | ||||||
---|---|---|---|---|---|---|
|
Expand | ||
---|---|---|
| ||
Add this rule when you want to give users the ability to shop for membership in the group from the IT Shop.
|
Expand | ||
---|---|---|
| ||
Add this rule when you want to explicitly restrict specific users from being able to view or request access to the group from the IT Shop. Keep in mind that users restricted from the group will not be eligible for it even if they have another eligibility assignment for the Role and Location.
|
Remove Eligibility
On the navbar, expand Identity Administration and click Groups.
From the All Groups tab, search for the group for which you want to remove eligibility.
Click the Logon Name link for the group.
On the Group Details page that appears, select the Advanced tab and then click the Eligibility sub-tab near the bottom of the page.
Expand the accordion that corresponds to the eligibility assignment you want to remove.
Click the trash can icon beside the assignment you wish to remove.
Click Submit.