Table of Contents

Search

  1. Preface
  2. Process Console Introduction
  3. Home
  4. Monitor
  5. Catalog, Reports, and Custom Faults
  6. Admin

Administration Console

Administration Console

Step 1: Setting Up Identity Service Groups with Security Roles

Step 1: Setting Up Identity Service Groups with Security Roles

As a first step, the Identity Service administrator in your organization must assign the tenant security role,
abTenantAdmin
, to the group who will administer the tenant context on the Process Server and will deploy contributions from Process Developer. This role gives an authenticated administrative user access to tenant-related pages of the Process Console and the authorization to deploy contributions into the tenant context.
In addition, users who will instantiate processes must have the
abServiceConsumer
role.
Example Security Role Setup
Identity Service Groups/Members
Role and Group Assignments
Tenant101AdminGroup
abTenantAdminabTaskClient
  • tenant101Admin1
  • tenant101Admin2
  • tenant101Developer1
Tenant101AdminGroup
abTenantAdmin
abTaskClient
Tenant101UserGroup
abSeviceConsumerabTaskClient
  • tenant101ProcessInitiator1
  • tenant101TaskUser2
Tenant101UserGroup
abSeviceConsumer
abTaskClient
After the tenant admin role is assigned to user groups, and you set up a tenant, a user with
abTenantAdmin
privileges can log into the tenant context of Process Console as shown in the following example:
http://localhost:8080/activevos/tenant101
Note that access to
http://localhost:8080/activevos
is denied to any user who does not have the
abAdmin
role.

0 COMMENTS

We’d like to hear from you!