After you have defined the RBS roles needed in your organization, you can assign members to each role. In doing so, you specify the scope in which each member can exercise the functions of the role.
The scope is the location or context in the eDirectory tree where this role can be performed. Some tasks require multiple objects to be managed. In these cases you will need to assign a scope high enough in the tree to encompass all objects or make two associations with different scopes that will encompass all objects.
Roles can have the following members:
You can create a Group object, assign Users to the Group, then associate the Group with the role. Every User object in the Group object is then automatically associated with that role. Groups or containers in the Group object are not associated with the role, however.
Associating an Organization or Organizational Unit object with a role automatically assigns every user in those containers to the role.
With this method, there is no way to exclude specific users in those containers from the role assignment.
A member can perform multiple roles and tasks. You can also assign the same task to multiple members.
Click the Configure button .
Click Role Configuration > Modify iManager Roles.
Click the Modify Members button in the role you want to modify.
Specify an object name (a User, Group, or container object) in the Name filed, then click Add.
To assign this role to multiple objects, repeat this step as many times as necessary.
To assign the same scope to multiple members, select the names of all the members you want to have this scope in the Name column.
Specify a scope (Organization or Organizational Unit object name and context) in the Scope field for a selected name, then click Add.
Every object name you add must have a scope to designate the context in the tree that will be affected by that object.
Click OK.