7.1

Table Of Contents
Manage the User Access Policy
vRealize Automation is supplied with a default user access policy that you can use as is or edit as needed to
manage tenant access to applications.
vRealize Automation is supplied with a default user access policy, and you cannot add new policies. You
can edit the existing policy to add rules.
Prerequisites
n
Select or congure the appropriate identity providers for your deployment. See “Congure an Identity
Provider Instance,” on page 110.
n
Congure the appropriate network ranges for your deployment. See Add or Edit a Network Range,”
on page 111.
n
Congure the appropriate authentication methods for your deployment. See “Integrating Alternative
User Authentication Products with Directories Management,” on page 101.
n
If you plan to edit the default policy (to control user access to the service as a whole), congure it before
creating Web-application-specic policy.
n
Add Web applications to the Catalog. The Web applications must be listed in the Catalog page before
you can add a policy.
n
Log in to the vRealize Automation console as a tenant administrator.
Procedure
1 Select Administration > Directories Management > Policies.
2 Click Edit Policy to add a new policy.
3 Add a policy name and description in the respective text boxes.
4 In the Applies To section, click Select and in the page that appears, select the Web applications that are
associated with this policy.
5 In the Policy Rules section, click + to add a rule.
The Add a Policy Rule page appears.
a Select the network range to apply to this rule.
b Select the type of device that can access the web applications for this rule.
c Select the authentication methods to use in the order the method should be applied.
d Specify the number of hours a Web application session open.
e Click Save.
6 Congure additional rules as appropriate.
7 Click Save.
Configuring vRealize Automation
100 VMware, Inc.