Summary
Following feature updates are covered in this update:
Resource Access Management
Role Management
Resource Access Management
A new flow for Resource access management has been introduced in Account Server. Through this flow you’ll be able to create app level resource types (e.g. LOCATIONS, REPORTS, STORES, CLIENTS, etc.), roles associated with a particular resource type, domain level resources (e.g WAREHOUSE_BLR, STORE_DELHI, CLIENT_1, etc.) and the resource type roles will automatically get associated with the domain level resources.
There are 2 flows for the above scenario.
Super Admin Flow
Here, the
superadmin
user can create app level resource by using the Manage Application Resources option next to Manage Application Roles.
2. Next, the user will be able to create roles associated with a resource type by using the Manage Application Roles popup. There is a bifurcation between app and resource level roles and you can use the radio button provided to choose the roles shown according to your choice.
Domain Admin Flow
Here, the domain admin user will be able to create domain level resources on the basis of resource type available for the current logged in application.
The option to create domain level resource will only be enabled if the user has
app.admin
orresource.admin
role.
3. Once a domain level resource is created, you will be able to view it inside the role management modal as used before for role management for a user.
Role Management
Once you click on user’s name, the role management modal will show. Now you have 2 options based on Role Level -
Top
&Resource
.
By default
Top
will be selected and you will be shown the roles on the top level i.e roles not associated with resources. (e.gSaaS
for the current logged in example). This is the same flow as before and you can select the name of the application through the dropdown present.Another option is
Resource
. Once clicked on that you'll be able to select the resource type and resource value on the basis of which you'll be able to view & manage the roles available for a particular domain level resource.