Skip to main content

Implementing OrgChart management

Configure the following to set up OrgChart maintenance with Bravura Security Fabric .

  1. Optional: Account attribute mapping for automatic OrgChart construction and propagation:

    If you want Bravura Security Fabric to build the initial OrgChart automatically, or if you want it to propagate changes to target systems when the OrgChart is updated, you must configure an appropriate target attribute.

    See Mapping attributes for organization chart management for details.

  2. Product administrators:

    Create an administrator to oversee and manage OrgChart construction. The administrator must be a Product administrator with the right to ”Manage the Orgchart”.

    See Creating an OrgChart manager for details.

Mapping attributes for OrgChart management

To illustrate how attribute mapping can be used, this section shows you how to map an account attribute to a profile attribute in order to build OrgChart data. This data can be used to escalate workflow requests or configure certification campaigns.

Map an account attribute if you want Bravura Security Fabric to:

  • Build the initial OrgChart automatically

  • Propagate changes to target systems when the OrgChart is updated

The account attribute that you configure must contain the long ID of the user’s primary manager. Bravura Security Fabric uses the built-in ORGCHART_MANAGER profile/request attribute to determine each user’s primary manager. The attribute can also be used to directly update a user’s primary manager. Ensure that your ”manager” account attribute is configured to be loaded during auto discovery .

Caution

Bravura Security Fabric allows exactly one OrgChart. If Bravura Security Fabric detects multiple trees in your pre-existing data, it uses the largest tree as the basis for your OrgChart.

If there are multiple trees with the same size, then Bravura Security Fabric chooses the tree with the greatest depth. Finally, if there are multiple trees with equal depth, then it chooses the first tree that it encountered.

If you want Bravura Security Fabric to propagate OrgChart changes to target systems, ensure that your ”manager” account attribute can be set.

Caution

After the initial OrgChart has been imported, if Bravura Security Fabric is still set up to load the ”manager” account attribute, but is not set up to propagate OrgChart changes back to the target system, any changes made to the OrgChart using Bravura Security Fabric will be overwritten during the next auto discovery.

Example: Configure an Active Directory or LDAP Directory Service account attribute

To configure an Active Directory or LDAP Directory Service account attribute for OrgChart management:

  1. Click Resources > Account attributes > Target system, then select select-icon.png the appropriate target.

    Alternatively, you can configure account attributes at the target type level.

  2. Click the Defaults tab.

  3. Override the default account attribute configuration.

    For an LDAP Directory Service or Active Directory target, select select-icon.png the manager attribute.

    Click Override.

  4. Ensure that the Map account attribute to profile/request attribute option is set to ORGCHART_MANAGER .

  5. Select the Load attribute values from target system checkbox if you want Bravura Security Fabric to import OrgChart data from the target system.

  6. Set Action when creating account to ”Set to specified value”. This means the value will be set by the ORGCHART_MANAGER profile attribute.

  7. Select an appropriate action from the Action when updating account drop-down list.

    If you do not want Bravura Security Fabric to propagate OrgChart changes to the target system, select Do not set this attribute.

  8. Click Add.

  9. If Bravura Security Fabric prompts you to confirm changes to attribute mappings, click Yes (recommended).

  10. Run auto discovery (Maintenance > Auto discovery > Execute auto discovery).

  11. Verifying that OrgChart data was loaded during auto discovery by running an Orgchart report.

Click below to view a demonstration:

Creating an OrgChart manager

This section demonstrates how to set up an existing Bravura Security Fabric user as an OrgChart manager:

  1. Click Manage the system > Security > Access to product features > Individual administrators.

  2. Click Add new… .

  3. In the ID field, search for, or type the profile ID of an existing user.

  4. Select The user has the following selected access controls then select ”Manage the OrgChart” from the list of rights.

  5. Click Add at the bottom of the form.

See Access to product features for more detail about access controls for product administrators.

OrgChart management modules

OrgChart management functionality is delivered by the following modules:

Manage the OrgChart (IDG)

Product administrators use the Manage the OrgChart (IDG) module to build and administer users in an OrgChart.

Browse the OrgChart (IDO)

Managers use the Browse the OrgChart (IDO) module to manage their subordinates in an OrgChart.

See Authorization workflow options for general workflow options and OrgChart Management Options for OrgChart-specific options.