how to make Administrator while loading LDAP resource

Hi Friends,

In my project we have requirement each person's profile in LDAP has a grouptype variable ADMIN will be administrator. I wrote dynamic gr to get those users out of LDAP. But How to achieve same functionality through IDM means how to make that person automatically admin. We have 10000 users in which we have 300-400 admins in each branch. I am not sure how to automatically assign capability as admin to those 300-400 persons. I do not want to search users and add capabilitity as admin in their profile,

Please let me know i I am not clear. I will try to reiterate.

[598 byte] By [boomers] at [2007-11-26 10:03:13]
# 1
I'm not sure sure how you are organising your users - and how you are loading them. If you are using load from a resource - you can write some workflow in a UserForm and assign admin role to them.
new@idm at 2007-7-7 1:36:43 > top of Java-index,Web & Directory Servers,Directory Servers...
# 2
You could use a capability rule on the User admin role to dynamically assign capabilities to some users
chits98 at 2007-7-7 1:36:43 > top of Java-index,Web & Directory Servers,Directory Servers...
# 3
Hi Chits, Thx for your reply. Can you please throw some more light how to write Capability rule. I checked rule in BMP I did not find this rule. Thx in advance
boomers at 2007-7-7 1:36:43 > top of Java-index,Web & Directory Servers,Directory Servers...