Share via


FIM/MIM: Enabling Access to Security Groups in Portal for All Users

Scenario

A customer that is looking to give normal users access to view and request access to Security groups through MIM.

Configuration

Under Management Policy Rules search for Security to minimize your scope

http://memphistech.net/wp-content/uploads/2016/09/clip_image002_thumb.jpg

Enable the following rules by disabling “Policy Is Disabled”

Security group management: Users can read selected attributes of group resources

Security group management: Users can add or remove any member of groups subject to owner approval

http://memphistech.net/wp-content/uploads/2016/09/clip_image004_thumb.jpg

http://memphistech.net/wp-content/uploads/2016/09/clip_image005_thumb.png

When you're done these rules should reflect "No" in the Disabled column.

Then change the Requestors on these following rules from Security Group Users to All Users and Groups

Security group management: Users can add or remove any member of groups subject to owner approval

http://memphistech.net/wp-content/uploads/2016/09/clip_image007_thumb.jpg

http://memphistech.net/wp-content/uploads/2016/09/clip_image009_thumb.jpg

Security group management: Users can read selected attributes of group resources

http://memphistech.net/wp-content/uploads/2016/09/clip_image011_thumb.jpg

http://memphistech.net/wp-content/uploads/2016/09/clip_image013_thumb.jpg

Next, under Administration go to Search Scope

http://memphistech.net/wp-content/uploads/2016/09/clip_image014_thumb.png

Edit the following item and add the Usage keyword

http://memphistech.net/wp-content/uploads/2016/09/clip_image015_thumb.png

Do the same thing in Administration under Navigation Bar Resource

http://memphistech.net/wp-content/uploads/2016/09/clip_image016_thumb.png

http://memphistech.net/wp-content/uploads/2016/09/clip_image017_thumb.png

Edit the following item and add the Usage keyword

http://memphistech.net/wp-content/uploads/2016/09/clip_image019_thumb.jpg

Whenever you make UI changes, you need to perform an IISRESET on the Portal server

Now login as your user and you should see the Security group section the same way an Administrator should see it.

http://memphistech.net/wp-content/uploads/2016/09/clip_image020_thumb.png