16.2 Configuring the Create Portlet

To configure the Create portlet, you’ll:

Step

Task

Description

1

Decide if the default Create User or Group feature meets your needs

If it does then you do not need to take any further action.

If it does not then you need to complete the remaining steps.

2

Define the types of objects that you want to allow users to create

Add the objects and attributes to the directory abstraction layer.

For more information, see Section 4.0, Configuring the Directory Abstraction Layer

3

Determine how you want users to access this new portlet

Do you want users to launch this portlet from an existing or a new page? Which users can access the portlet and the page?

For more information about pages, see Section 7.0, Page Administration.

4

Specify the users that have access to the page and the portlet instance

Edit the page security and add the users to the list. For more information on restricting user access to pages, see Section 7.0, Page Administration.

Edit the portlet instance to change security. For more information on restricting user access to portlets, see Section 9.0, Portlet Administration.

5

Set preferences for the portlet

Preferences let you define:

  • What objects users can create.

  • What attributes to supply during the create.

For more information, see Section 16.3, Setting Create Preferences.

6

Test

Verify that the objects are created and that the attributes are populated properly.

7

Establish the proper effective rights in eDirectory for your end users

To create an object, the user will need to be Trustee of the organizational unit and the organization in which the object is created.

16.2.1 Directory abstraction layer setup

Objects that can be created and attributes that can be populated by users of the Create portlet must be defined in the directory abstraction layer as follows:

Definition Type

Property

Value

entity

create

Selected

view

Selected

If not selected, the entity will not display in the list of entities that can be created.

Container for Create

Specify a valid identity vault container.

If a valid container is not supplied the root container specified during the user application installation is used.

Password

Selected, if the entity type requires a password on create.

Anyone who has access to Create and has Trustee rights to the OU can create users and assign the initial password. When the new user first logs in, they are redirected to the IDM Change Password portlet where they'll modify the initial password.

For more information on the IDM Change Password portlet, see Section 19.0, Password Management Portlets Reference.

attribute

enabled

viewable

Selected

If enabled or viewable are not selected (false), the attribute cannot be used by the portlet.

For more information on setting up the abstraction layer, see Section 4.0, Configuring the Directory Abstraction Layer.