Novell Identity Manager 3.5.1
eDirectory 8.8.X
Red Hat Linux Enterprise
Entitlment Service Driver
RBE Policy iManager.


'
Hello


We are using RBE for GRANTING and REVOKING group membership etc in our
solution. One thing which is not clear about Entitlements is how
"Re-Eavaluate RBE" works in iManager?

In our experiences "RE-EVALUATE" works only if user have not the
specific or generally ENTITLEMENT attribute value populated already in
Identity Manager.

to do the Re-evaluation i have to DELETE the specific ENTITLEMENT
attribute value on the user in iManager.

is this right behaviour?

We have scenarios

#1:
We have the same entitlement GRANTED for the users, but we want to
update the rbe policy with ENTITLEMENT value while keeping the same
Membeship criteria for the rbe policy, How can we RE-APPLY the policy
on the bulk users to whom that
apply? (RE-EVAULATE DOES NOT WORK IN OUR SOLUTION, SINCE THE USER HAS
ALREADY ENT GRANTED) IS IT BUG OR BY DESIGN?

#2: While applying the ENTITLMENTS on the user there was a BUG in the
driver policy that implements the ENTITLEMENT, and it didn't do its job,
How can we RE-.APPLY the policy on the bulk user to whom that apply
after fixing
the policy bug on the driver ? ( DELETING specific entitlement
is boring and time consuming job) (RE-EVAULATE DOES NOT WORK IN OUR
SOLUTION, SINCE THE USER HAS ALREADY ENT GRANTED) IS IT BUG OR BY
DESIGN?

#3: How to just do RETRY/RE-APPLY Entitlement policy on the user who
have or not have the ENtitlenmen GRANATED ealier? ( I want to see the
sync / migrate-from-idm) effect on RBE policy?


Hope to hear from you gius soon

Regards

M.


--
belaie
------------------------------------------------------------------------
belaie's Profile: https://forums.netiq.com/member.php?userid=308
View this thread: https://forums.netiq.com/showthread.php?t=46062