When you use the
tivcmd addtorole command
to assign a user or user group to a role, you must specify the unique
name (also called the distinguished name) of the user or user group
in the LDAP user registry.
cn=user1,ou=users,ou=SWG,o=IBM,c=US is
an example of a user name.
cn=group1,ou=groups,ou=SWG,o=IBM,c=US is
an example of a group name. If you have been assigned the iscadmins
and administrator roles for IBM Dashboard Application Services Hub,
you can use the WebSphere Administrator Console to see unique names
for users and groups in your environment by performing the following
steps:
- Open the WebSphere Administrative Console. By default the URL
is https://<hostname>:16316/ibm/console where <hostname>
is the hostname of the computer where the IBM Dashboard Application
Services Hub and the Tivoli Authorization Policy Server are installed.
- Select Users and Groups.
- Under Manage Users or Managed Groups, the
known users are listed.
- When assigning users or user groups to roles, use the value listed
under Unique Name.