Differences
This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision | ||
tutorial:adm:role_change_configuration [2017/11/04 09:37] poulm |
tutorial:adm:role_change_configuration [2022/03/29 15:06] (current) apeterova extras approval workflows + fixed supported priorities |
||
---|---|---|---|
Line 1: | Line 1: | ||
+ | ====== Role assignment - approval process configuration ====== | ||
+ | Process of role change request approval is managed by CzechIdM [[: | ||
+ | |||
+ | * **idm.sec.core.wf.approval.helpdesk.enabled** | ||
+ | * **idm.sec.core.wf.approval.manager.enabled** | ||
+ | * **idm.sec.core.wf.approval.usermanager.enabled** | ||
+ | * **idm.sec.core.wf.approval.security.enabled** | ||
+ | {{ : | ||
+ | |||
+ | **Who approves** | ||
+ | |||
+ | * **idm.sec.core.wf.approval.helpdesk.role** | ||
+ | * **idm.sec.core.wf.approval.usermanager.role** | ||
+ | * **idm.sec.core.wf.approval.security.role** | ||
+ | Value of each property is the name of the role of which the holders approve the role change request in appropriate step. e.g **idm.sec.core.wf.approval.security.role = Security** | ||
+ | |||
+ | ===== Role criticality/ | ||
+ | |||
+ | Standard role approval process takes into account also role criticality. Each role can have its priority set [[.: | ||
+ | |||
+ | The basic workflow names are: **approve-role-by-guarantee** | ||
+ | |||
+ | **Defaults: | ||
+ | |||
+ | * idm.sec.core.wf.role.approval.0 is not specified (no additional approval workflow is used) | ||
+ | * idm.sec.core.wf.role.approval.1=approve-role-by-manager | ||
+ | * idm.sec.core.wf.role.approval.2=approve-role-by-guarantee | ||
+ | * idm.sec.core.wf.role.approval.3=approve-role-by-guarantee-security | ||
+ | * idm.sec.core.wf.role.approval.4 is not specified (no additional approval workflow is used) | ||
+ | |||
+ | Other types of approval workflows can be found in the [[: |