keycloak-scim/topics/permission/create-resource.adoc
2016-06-05 19:17:31 -03:00

34 lines
No EOL
1.3 KiB
Text
Executable file

== Creating Resource-based Permissions
A Resource-based permissions defines a set of one or more resources to protect using a set of one or more authorization policies.
To create a new permission select the option *Resource-based* in the dropdown located in the right upper corner of the permission listing. In {{book.project.name}}, a resource-based permissions consist of the following information:
* *Name*
+
A human-readable and unique string describing the permission. We strongly suggest you to use names that are closely related with your business and security requirements, so you
can identify them more easily and also know what they actually mean
+
* *Description*
+
A string with more details about this policy
+
* *Apply To Resource Type*
+
Specifies if this permission would be applied to all resources with a given type. When you select this field, you'll be prompted to enter the resource type to protect.
+
** Resource Type
+
Defines the resource type to protect. When defined, this permissions is going to be evaluated for all resources matching the type
+
* *Resources*
+
Defines a set of one or more resources to protect
* *Apply Policy*
+
Defines a set of one or more policies to associate with a permission
* *Decision Strategy*
+
The decision strategy for this permission