Information Management IBM InfoSphere Master Data Management, Version 11.3

Associating groups and roles

After the roles are created in the InfoSphere® MDM Reference Data Management Hub, they are linked to the groups in the web application server. If you do not plan anything beyond creating additional users, you do not need to modify the configuration within the InfoSphere MDM Reference Data Management Hub EAR files. New users become members of the groups that are defined in WebSphere® Application Server. Optionally, if you plan to remove the standard users or add or modify groups and roles, adjust the InfoSphere MDM Reference Data Management Hub configuration.

About this task

Groups serve two purposes:

Users are then assigned to role groups and owner groups in the WebSphere Application Server.

For example, users assigned the "Steward" role can see the Reference Data Sets tab and the Mappings tab. The reference data sets that are visible are determined by the owners of the set.

For example, if a reference data set is owned only by the group crm, all members of the crm group can work with that set. Members of the enterprise set, such as those users with the Steward role, can view the set and its properties and reference values, but cannot edit the set. Users who are members of multiple groups have permissions of the combined groups. The user tabs, for example, is a member of the crm, mdm and enterprise groups, and has write permissions for any set of which the group crm, mdm, or enterprise is an owner.

Procedure

  1. Create any additional role groups that you need in InfoSphere MDM Reference Data Management Hub. For information, see Creating roles.
  2. Create any additional owner groups that you need by adding a key=value pair to the RDMClientEar\RestAPI\WEB-INF\classes\groups.properties file.
  3. Map the security roles to the groups in the web application server. See Assigning roles to groups in WebSphere Application Server.


Last updated: 27 June 2014