Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Create a PBAC membership policy (type eligible) for a Management Role

PBAC Membership policies can be created on the view one page of the management role that is the target of the policy. In the below example, we demonstrate how to create a policy using the view-one page of a management role that is the target of the policy.

  1. On the navbar, expand Role Management and select Management Roles.

  2. Search for a management role name.

    Image Added

  3. Click on the management role Name hyperlink to open the management role’s view-one page. Select the Advanced tab and scroll down to select Attribute-Based Membership Policies..

    Image Added

  4. Click on the + icon in the above image to create a new membership policy for this management role. The below page will open. Enter the name of the policy, select a policy type. Check the IsEnable check box. Select the minute interval (say 15 min) and click on Save.

    Image Added

  5. This will create the PBAC membership policy and queue it for compilation.

    Image Added



Add a PBAC Attribute to a PBAC Membership Policy

  1. You can add a PBAC attribute to an existing PBAC membership policy. Click on the Name link of the PBAC Membership policy you want to add an attribute to. This will open the view-one page of this PBAC membership policy. Select the Attribute Conditions (Field Types) link.

    Image Added

  2. Click on the + icon to add an attribute to this policy that you added to the person earlier. Search for the name of the PBAC membership policy and select it. Select the two values ( sales and software) check boxes. Select the checkbox If matches all values. Click Save.

    Image Added

  3. The attribute is now added to the PBAC membership policy type.

    Image Added


Verify the Result

  1. After the PBAC membership policy is compiled, it will propose(eligible) the person to the management role. This can be checked at the view-one page of the management role ( for which the policy was created). Select the Attribute Based Membership Inbox link. We can see that the person( to which the PBAC attribute was added) is now a proposed or eligible member of this management role.

    Image Added

Insert excerpt
IL:External Stylesheet
IL:External Stylesheet
nopaneltrue

...