Creating Authorization Policies - Novell ACCESS MANAGER 3.1 SP1 - AGENT GUIDE Manual

J2ee* agent guide
Table of Contents

Advertisement

6 To save your Role policy, click OK > Apply Changes.
7 Activate the Role policy for your Identity Server cluster configuration. Click Identity Servers >
Edit > Roles.
8 Select the name of your Role policy, click Enable, then click OK.
9 Update the Identity Server. Click Identity Servers > Update.
10 Continue with

7.2.2 Creating Authorization Policies

The payroll application is a
Each module type requires its own type of Authorization policies, and to fully protect the
application, you must create the following policies:
"Creating EJB Authorization Policies" on page 88
"Creating Web Authorization Policies" on page 90
Creating EJB Authorization Policies
You need to create two policies: one that permits Managers to access EJB resources and one that
permits Employees to access EJB resources.
1 In the Administration Console, click Devices > Policies.
2 To create an Authorization policy for the employees, click New, specify a name for the policy,
select J2EE Agent: EJB Authorization as the type, then click OK.
3 For the first rule, click New, set up a condition that permits access if the user has been assigned
the Employee role, then click OK. Your rule should look similar to the following:
88
Novell Access Manager 3.1 SP1 Agent Guide
Section 7.2.2, "Creating Authorization Policies," on page
file that contains both an EJB module and a Web (
.ear
88.
) module.
.war

Advertisement

Table of Contents
loading

This manual is also suitable for:

Access manager 3.1 sp 1

Table of Contents