Provisioning Roles Responsibilities and Positions in LDAP (OID)
What is the recommended approach to externalisation of Siebel role/responsibility/position user assignment in LDAP (e.g., using OAM/OID and otherwise, Oracle Identity & Access Management)?
Considering the scenario where a Sievbel user can be assigned multiple responsibilities and potentially hold multiple positions (covering for someone on vacation, etc).
We tried to use LDAP group-level security but the Siebel Security adapter does not work with group-level references.
Is the recomendation to use multi-value attributes? It follows that if the responsibility assignment is "tracked" at the attribute level, then the attribute must be defined as a multi-value attribute, otherwise, a user record in LDAP would need a separate attribute for every responsibility/role/position, right?