Assigning an Identity Policy

Describes how to assign an identity policy to an identity by using the Data Fabric UI.

Prerequisites

You must be a fabric manager to perform this operation.

About this task

When you assign an identity policy to one or more roles, SSO users, and/or SSO groups, the statements in the identity policy are applied to the role, SSO users, and/or SSO groups.

An identity policy is enforced when it is active and is attached or assigned to an identity like a user, group, and/or role. If an identity policy is inactive, it will not be disarmed, even if it is assigned to an identity.
NOTE
After assigning an identity policy, you can navigate out of the page using the breadcrumb on the top left side of the page.

Follow the steps given below to assign an identity policy.

Procedure

  1. Log on to the Data Fabric UI.
  2. Click the Security Administration icon > Policy management tab.
  3. Click the Identity policies tab.
  4. On the list of identity policies seen on the Identity policies tab, click the ellipsis under Actions for the identity policy to assign.
  5. Click Assign Policy to to assign the identity policy to another identity such as users/groups/roles.
  6. Click Add+ on the Users card, enter the search criteria and select the users that you wish to assign the identity policy to. This is an optional step.
  7. Click Add+ on the Groups card, enter the search criteria and select the groups that you wish to assign the identity policy to. This is an optional step.
  8. Click Add+ on the Roles card, enter the search criteria and select the roles that you wish to assign the identity policy to. This is an optional step.

Results

The policy is assigned to the selected SSO users, SSO groups, and/or roles. If the policy is active, it is enforced for the selected SSO users, SSO groups, and/or roles.