User Management Configuration Authorization Policies for Oracle Identity Manager Features

Managing Authorization Policies 15-27 – Delete – Modify – Search These permissions do not support fine-grained attribute-level controls. ■ Data security: None ■ Description: Allows users with the REQUEST TEMPLATE ADMINISTRATORS or SYSTEM ADMINISTRATORS role to access all request template actions.

15.3.10 Approval Policy Management

The default authorization policy for the approval policy management feature allows users with the APPROVAL POLICY ADMINISTRATORS role to access all approval policy management operations. This policy has the following details: ■ Policy name: Approval Policy Management Policy ■ Assignee: APPROVAL POLICY ADMINISTRATORS role ■ Functional security: The permissions are: – Create – Delete – Modify – Search These permissions do not support fine-grained attribute-level controls. ■ Data security: None ■ Description: Allows users with the APPROVAL POLICY ADMINISTRATORS or SYSTEM ADMINISTRATORS role to access all approval policy management actions.

15.3.11 Notification Management

The default authorization policy for the notification management feature allows users with the NOTIFICATION TEMPLATE ADMINISTRATORS role to access all notification management operations. This policy has the following details: ■ Policy Name: Notification Management Administration Policy ■ Assignee: System Administrators and NOTIFICATION TEMPLATE ADMINISTRATORS roles ■ Functional security: The permissions are: – Add Locale – Create See Also: Chapter 18, Managing Approval Policies for information about the approval policy management feature See Also: Managing Notification Templates in the Oracle Fusion Middleware Administrators Guide for Oracle Identity Manager for information about the notification management feature 15-28 Oracle Fusion Middleware Users Guide for Oracle Identity Manager – Delete – Filter – Lookup – Modify – Remove Locale – Search These permissions do not support fine-grained attribute-level controls. ■ Data security: None ■ Description: Allows users with SYSTEM ADMINISTRATORS or NOTIFICATION TEMPLATE ADMINISTRATORS role to access all notification template management actions.

15.3.12 System Properties

The default authorization policy for the system properties feature allows users with the System Administrators and SYSTEM CONFIGURATION ADMINISTRATORS roles to access all operations related to system properties. This policy has the following details: ■ Policy name: System Properties Administration Policy ■ Assignee: System Administrators and SYSTEM CONFIGURATION ADMINISTRATORS roles ■ Functional security: The permissions include: – Create – Delete – Filter – Lookup – Modify – Search These permissions do not support fine-grained attribute-level controls. ■ Data Constraints: None ■ Description: Allows users with the SYSTEM ADMINISTRATORS or SYSTEM CONFIGURATION ADMINISTRATORS role to access all system properties actions

15.3.13 Diagnostic Dashboard

The default authorization policy for the Diagnostic Dashboard feature allows users with the System Administrators role to access the diagnostic dashboard. This policy has the following details: See Also: Administering System Properties in the Oracle Fusion Middleware Administrators Guide for Oracle Identity Manager for information about the system properties