 |
In the Access Rules Management application access points are defined as objects bound to the object “Employee” as “Assigned Access Points.” The access point objects can be linked to information existing in external databases or being implemented inside the HCM Extension Suite. A rule attached to an access point defines a condition based on the properties of the object “Employee.” The application defines which access points are required for a particular employee accordingly to the attached rule.
In the example on the left two access points are defined. IdM Role points to the object “IdM Role” linked to the information in the IT IdM database. Lab points to the object “Lab” linked to the information in the IT Secure Doors database. |
 |
In the example on the left an access rule is defined as a reference to a corresponding access point related to the object "Employee". Three access rules are attached to the access point IdM Role: IdM role is attached to the facility, department, and research role of an employee. The definitions and maintenance of the IdM roles attached to the objects “Facility,” “Department” and “Research Role” are done via the Data Entry module of the HCM Extension Suite.
The rule attached to the access point Lab represents all labs that belongs to the department an employee is working for. The rule has an additional condition that only employees having the Research Role “Administrator” will require access to the labs defined by the rule. |
|