7.4

Table Of Contents
4 After the user successfully logs in, the service launches the application and saves the authentication
event.
The user can continue to launch this application for up to one hour but is asked to reauthenticate after
an hour, as dictated by the policy rule.
Manage the User Access Policy
vRealize Automation is supplied with a default user access policy that you can use as is or edit as needed
to manage tenant access to applications.
vRealize Automation is supplied with a default user access policy, and you cannot add new policies. You
can edit the existing policy to add rules.
Prerequisites
n
Select or configure the appropriate identity providers for your deployment. See Configure a Third
Party Identity Provider Connection.
n
Configure the appropriate network ranges for your deployment. See Add or Edit a Network Range.
n
Configure the appropriate authentication methods for your deployment. See Integrating Alternative
User Authentication Products with Directories Management.
n
If you plan to edit the default policy (to control user access to the service as a whole), configure it
before creating Web-application-specific policy.
n
Add Web applications to the Catalog. The Web applications must be listed in the Catalog page before
you can add a policy.
n
Log in to vRealize Automation as a tenant administrator.
Procedure
1 Select Administration > Directories Management > Policies.
2 Click Edit Policy to add a new policy.
3 Add a policy name and description in the respective text boxes.
4 In the Applies To section, click Select and in the page that appears, select the Web applications that
are associated with this policy.
5 In the Policy Rules section, click + to add a rule.
The Add a Policy Rule page appears.
a Select the network range to apply to this rule.
b Select the type of device that can access the web applications for this rule.
c Select the authentication methods to use in the order the method should be applied.
d Specify the number of hours a Web application session open.
e Click Save.
6 Configure additional rules as appropriate.
Configuring vRealize Automation
VMware, Inc. 120