Skip to end of banner
Go to start of banner

Membership and Permissions

Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

Version 1 Next »

Users of Identity and Access Management (IAM) generally belong to at least one IAM group or roles in order to follow IAM security best practises. A collection of IAM users is referred to as an IAM user group.

Membership: EmpowerID allows dynamic assignment of users to a group’s membership or role using role-based delegations. Assignees can be any EmpowerID Actor type, such as Business Role and Location combinations, Management Roles, Query-Based Collections and other groups or roles.

For Example, we can create a dynamic group membership for anyone assigned to a specific Business Role and Location. Thus, any person who belongs to that Business Role and Location is automatically added to the group or role as a member.

Permissions: permissions are nothing but rights to do certain things in the system. User groups or roles allow you to specify permissions for many users, making it easier to manage those users permissions.

Membership and permissions are configured for birthright access by EmpowerID using four simple steps as depicted in the image below:

  1. Grant Who: which users to grant the access.

  2. Type of access: which type of access to be granted.

  3. Where: which resources or location the user will get access to.

  4. How long : for how long the access will be granted.

Key Takeaways:

  1. EmpowerID allows dynamic assignment of users to a group’s membership using role-based delegations.

  2. Permissions are nothing but rights to do certain things in the system.

  3. Membership and permissions can be configured for birthright access by EmpowerID.

  • No labels