Role-Based Group Memberships

EmpowerID allows you to dynamically assign users to groups using role-based delegations. Assignees can be any EmpowerID Actor type, such as Business Role and Location combinations, Management Roles, Query-Based Collections and other groups. This article demonstrates this by creating a dynamic group membership for anyone assigned to a specific Business Role and Location. In this way, any person who belongs to the Business Role and Location is automatically added to the group as a member.

Prerequisites

To ensure EmpowerID maintains group membership, ensure Group Membership Reconciliation is enabled for the account store with the target group(s).

Create role-based group memberships

  1. On the navbar, expand Role Management and select Manage Delegations.

  2. Select the Resource Delegations tab.

  3. For Resource Type, select the type of group.

  4. For Enter a Group (Group Type) Name to Search, enter the name of the group to which you want to create role-based memberships.

  5. For To Which Type of Actor Do You Wish To Assign Access, select the desired actor type.

  6. Click the Add New button on the Grid Header.

     

  7. Search for and select a business role from the Business Role tree and then search for and select a location from the Location tree.

     

  8. For Access Level, select Member.

     

  9. If you want to limit the duration of the membership access, select Temporary Access and set the access parameters appropriately.

     

  10. Click Save.