You can use user and group directory name search parameters to control user and group entitlements.

About this task

For users or groups from other domains to have the expected system privileges, they must appear on the following pages:

  • Administration > Users

  • Administration > Groups

If the users or groups do not have the expected privileges, review the search base distinguished name parameters on the Identity Store Configuration page. Ensure that the distinguished name search parameters are not so restrictive that the users and groups are excluded from the desired domains.

Prerequisites

Log in to vRealize Automation as a tenant administrator.

Procedure

  1. Select Administration > Identity Stores.
  2. Select the appropriate identity store and then click the Edit button.
  3. Edit the group base distinguished name search parameters in the Group search base DN text box.

    If users or groups do not possess adequate privileges, edit the search parameters to be less restrictive.

  4. Edit the user base distinguished name search parameters in the User search base DN text box.

    If users or groups do not possess adequate privileges, edit the search parameters to be less restrictive.

  5. Click Test Connection.
  6. Click Update.