NSD1046 How to setup delegated administration
Fact
Nordic Edge Identity Manager
Situation
· Create/load a create OU Tab.
· Create a new OU
· Create one or more users in that OU
· Create a role for delegated administration and add users to it
· Apply the following policies to the delegated administration group:
- BASEDN (the new OU)
- LOAD_TAB (should point to where in the folder structure the Tab forms resides)
Solution
1. In the menu for NordicEdge Identity Manager Standalone client start Tools / Tab designer (Alt+D).
2. In the file menu start New Create Tab (Alt+C).
3. Display Name: The name that will be displayed for this tab, doesn’t have to unique.
Tab Title: The title of this Tab. This name must be unique among all Tabs.
ObjectClasses: Select the ObjectClass this Tab will be displayed for. In this case it’s organizationalUnit
Tab Template: Select a tab to be used as template. This is optional.
Press Apply.
4. Drag-and-drop a text field into the Tab. The TextField-button can be found in the upper left corner.
5. Attribute name should be ou and change the title to New OU. The Naming attribute must be checked. Press Apply.
6. Right click on the container in which you want to create your new OU and chose New – Create OU.
7. Create a new user by right-clicking the new OU and chose New – Create user.
8. Create a new Global group for delegated administration by right-clicking the new OU and chose New – Global group.
9. Right click the delegated administration group – properties. Under the tab “Group members” add a user.
10. For adding policies to a group right click the group and go to the Policy Manager Tab.
- The BASEDN policy can be found under Security – Access Rights. The object of this exercise is to use the newly created OU as the BASEDN. Browse to the OU by clicking the Browse button.
- To set the LOAD_TAB policy go to Security – Tab Access Rights – LOAD_TAB. The value should point to the container where the Tab forms are saved. Press OK. Note! The Apply button should not be used when setting policies because it’s not active. Use only the OK button.
Disclaimer
The origin of this information may be internal or external to Nordic Edge™. Nordic Edge™ makes all reasonable efforts to verify this information. However, the information provided in this document is for your information only. Nordic Edge™ makes no explicit or implied claims to the validity of this information. Any trademarks referenced in this document are the property of their respective owners.
Nordic Edge Support – www.nordicedge.se
