Project

General

Profile

Actions

Defect #2336

closed

Authorization policies - policies for standard logged user (self) and manager (by subordinate) cannot be configured together

Added by Radek Tomiška almost 4 years ago. Updated almost 4 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Radek Tomiška
Category:
Authentication / Authorization
Target version:
Start date:
06/22/2020
Due date:
% Done:

100%

Estimated time:
Affected versions:
Owner:

Description

Support combine SelfIdentityEvaluator and IdentityContractByIdentityEvaluator to cover UC:
- logged identity can change roles for all it's contracts,
- logged manager can change roles for subondinate contracts only.

Add new option 'CHANGEPERMISSION' for IdentityContractByIdentityEvaluator to include this permision from identity tyransitivelly.

@affected version 10.3.0

Actions

Also available in: Atom PDF