[OpenShift Container Platform][IBM Cloud Pak for Integration]

Giving permissions for the IBM MQ Console using the IBM Cloud Pak IAM

Permissions for the IBM® MQ Console are managed through the IBM Cloud Pak® Administration Hub, and not the IBM Cloud Pak for Integration Platform Navigator. IBM MQ does not use the "Automation" permissions provided by the IBM Cloud Pak for Integration, but instead uses the basic permissions enabled by the IBM Cloud Pak Identity and Access Manager (IAM).

Procedure

  1. Open the IBM Cloud Pak Administration console.

    From the IBM Cloud Pak for Integration Platform UI, click the Cloud Pak switcher (9-dot icon) in the upper-right corner of the toolbar, then click the IBM Cloud Pak Administration panel.

  2. In the navigation menu in the upper-left corner, select Identity and access, then select Teams and services IDs.
  3. Create a team, then add users to it.
    1. Select Create team.
    2. Input a team name, then select the security domain for the users you want to manage.
    3. Search for users.
      These users must exist already in your identity provider.
    4. When you find each user, give them a role. This must be "Administrator" or "Cluster Administrator", to administer IBM MQ using the IBM MQ Console.
  4. Add each user to a namespace.
    1. Select the team to edit it.
    2. Select Resources > Manage Resources.
    3. Select the namespaces that you want this team to administer. These can be any namespaces with a queue manager.