Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  1. If necessary, add an attribute to the user class LDAP schema (e.g. DPOD_role attribute).
  2. For each user that should use DPOD's Console, add the attribute with one of the built-in role names: todo:hk are the roles same? also scenariob
    1. DPODAdmin
    2. DPODPowerUser 
    3. DPODOperator
    4. DPODInvestigator.
    5. OpDashAdminRole
    6. OpDashPowerUserRole 
    7. OpDashOperatorRole
    8. OpDashInvestigatorRole

Scenario B - an attribute at the group directory entry

...

  1. If necessary, add an attribute to the group class LDAP schema (e.g. DPOD_role attribute).
  2. Create 4 groups - one for each built-in role. The group names do not have to be identical to the built-in role names.
  3. For each group, if required, add the attribute with one of the following values:
    1. DPODAdminOpDashAdminRole
    2. DPODPowerUserOpDashPowerUserRole 
    3. DPODOperatorOpDashOperatorRole
    4. DPODInvestigatorOpDashInvestigatorRole

 

Note

If the groups CN is the same as the built-in role names, no additional attribute is required.