5.2 Defining RBS Roles

RBS roles specify the tasks that users are authorized to perform in specific administration applications. Defining an RBS role includes creating an RBS role object and specifying the tasks that the role can perform. In some cases, administration applications might provide a few predefined RBS role objects that you can modify.

The application tasks that RBS roles can perform are exposed as RBS task objects in your eDirectory tree. These objects are added automatically during installation of one or more administration applications. They are organized into one or more RBS modules, which are containers that correspond to the different functional modules of the application.

HINT:If your organization has developed a custom administration application that uses RBS objects, you can create the RBS objects for it manually as explained in Section 5.4, Creating RBS Objects for Custom Applications.

In This Section

5.2.1 Creating an RBS Role Object

  1. Right-click the container that you want to create the RBS role object in > click New > click Object.

  2. Under Class, select RBS:Role > click OK.

  3. Enter a name for the new RBS role object.

    Be sure to follow proper eDirectory naming conventions. See “ Naming Conventions” in the Novell eDirectory Administration Guide.

    Example: Password Administrator Role

  4. Click OK.

5.2.2 Specifying the Tasks That RBS Roles Can Perform

  1. Right-click an RBS role or RBS task object > click Properties.

    RBS task objects are located only in RBS module containers.

  2. On the Role Based Services tab, make the associations you want:

    • For an RBS role, select the Role Content page > edit the list of tasks that the role can perform.

    • For an RBS task, select the Member Of page > edit the list of roles that can perform the task.

  3. Click OK.