Novell ACCESS MANAGER 3.1 SP2 - POLICY GUIDE 2010 Manual page 25

Hide thumbs Also See for ACCESS MANAGER 3.1 SP2 - POLICY GUIDE 2010:
Table of Contents

Advertisement

Suppose you belong to a company of 300 employees, and ten of them are managers. You can assign
all employees to an Employee role, and make it a condition of an Authorization policy with no
restrictions. Such a policy would permit access to Web resources intended for all employees, as
shown in the following example:
Employee Authorization Policy
Figure 2-4
For more sensitive Web resources intended only for managers, you might create a role called
Manager. (See
"Creating a Manager Role" on page
49). The Manager role might be a condition of an
Authorization policy that denies access to any employee that has not been assigned to the Manager
role when the user authenticated. The following example illustrates this. Notice that the operand for
the governing condition logic is set to
.
If Not
Creating Role Policies
25

Advertisement

Table of Contents
loading

Table of Contents