Secure > Authorization > Customize default access control policies > Examples: Customizing access control policies using the Organization Administration Console
Example: Permitting fulfillment center managers to update fulfillment centers but not to delete them
By default, fulfillment center managers are authorized to update or delete the fulfillment centers associated with their store. In some cases, you might want to allow fulfillment center managers to update fulfillment centers but not to delete them.
To make this change, do the following:
- Determine the resource-level policy that authorizes fulfillment center managers to manage fulfillment centers.
- Remove the action for deleting a fulfillment center from the policy's action group.
Remove the action for deleting a fulfillment center
- Find the resource-level policy that authorizes procurement shopping cart managers to manage procurement shopping carts for orders. The policy is:
FulfillmentCenterManagersForOrgExecuteFulfillmentCenter ManageCommandsOnFulfillmentResource
- From the Organization Administration Console, click Access Management > Policies.
- Locate the policy in the list of policies.
- Note the name of its action group--FulfillmentCenterManage. You need to update this action group to remove the action for deleting fulfillment centers.
- Click Access Management > Action Groups.
- From the list of action groups, select FulfillmentCenterManage.
- Click Change to display the Change Action Group page.
- From the Selected Actions list, select com.ibm.commerce.inventory.commands.FulfillmentCenterDeleteCmd.
- Click Remove.
- Click OK.
Update the access control policy registry with the changes
- Open the Administration Console.
- Click Configuration > Registry.
- From the list of registries, select Access Control Policies.
- Click Update.