Membership Tab

The Membership Tab allows you to associate a person with groups and roles and, by extension, with KIM permissions and responsibilities. Assigning a person to a role is the most direct way to give a user KIM permissions and responsibilities.

 Figure 10 - Membership tab

The tab is divided into three sections, one for managing assignments to Groups, another for Roles, and a third for Delegations.

Groups Section

Table 9  Groups section definition

Title

Description

Group

Optional. Enter the name of the KIM group you want to assign this person to. You can also use the Group lookup _searchicon  to search for and select a valid value.

Namespace Code

Display-only. After you select a group to add this person to, the namespace code associated with the selected group is displayed.

Name

Display-only. After you select a group to add this person to, the name of that group is displayed.

Type

Display-only. After you select a group to add this person to, the type associated with the selected group is displayed.

Active From Date

Optional. If this user's assignment to this group is to be effective as of a certain date, enter that date here.

Active To Date

Optional. If this user's assignment to this group is to terminate as of a certain date, enter that date here.

pencil-small   There is no way to delete a person's assignment to a group. To remove a person from a group, use this field to specify a date in the past.

Actions

Click the Add button to add this group assignment.

 

Roles Section

Table 10  Roles section definition

Title

Description

Role

Optional. Use the Name lookup _searchicon to search for and select the role you want to assign this person to.

Namespace Code

Display-only. After you select a role to assign to this Person record, the system displays the namespace code associated with that role.

Name

 Display-only. After you select a role to assign to this Person record, the system displays the name associated with that role.

Type

Display-only. After you select a role to assign to this Person record, the system displays the role type associated with the selected role here.

Active From Date

Optional. If this user's assignment to this role is to be effective as of a certain date, enter that date here.

Active To Date

Optional. If this user's assignment to this role is to terminate as of a certain date, enter that date here.

pencil-small   Note that there is no way to delete a person's assignment to a role. To remove a person from a role, use this field to specify a date in the past.

Actions

Click the Add button to add this role data.


pencil-small

When assigning some roles, you may need to supply additional qualifying values that further define this person's assignment. For more information about role qualifiers, see Role.

Delegations Section

Delegations allow you to set a user as a primary or secondary delegate for a current member of a role. The delegate has the same permissions as the role member and is able to act on action requests generated for the role member by KIM.

Table 11  Delegations section definition

Title

Description

Role Member

Optional. Use the Role Member lookup _searchicon to search for and select the role and role member you wish to add a delegation for.

Active From Date

Optional. If this delegation is to be effective as of a certain date, enter that date here.

Active To Date

Optional. If this delegation is to terminate as of a certain date, enter that date here.

pencil-small   Note that there is no way to delete a person's delegation. To remove a person from a role, use this field to specify a date in the past.

Delegation Type Code

Optional. This defines how the delegate will be able to access workflow action requests generated to the delegating role member. Options are 'Secondary' (the user must use the secondary delegate action list filter to view action requests) and 'Primary' (action requests will route directly to the delegate's action list).

Actions

Click the Add button to add this delegation data.

More:

Groups Section