← Back to plugin index

Simple Realm Administration

Description
Settings for simple realm administration (where administrators manage users in their own realm).

Simple realm administration cannot be combined with realms mode, i.e. it must not be configured if the Adminapp uses the "Delegation-based Access Control" plugin.

Type name
RealmAdministration
Class
com.airlock.iam.admin.application.configuration.realm.RealmAdministrationConfig
May be used by
License-Tags
RealmAdministration
Properties
Admin Realm Context Data Name (adminRealmContextDataName)
Description
The name of the context data field where the administrator's realm is stored. In the standard IAM database schema the field "realm" is reserved for this purpose. In order to assign a realm to an administrator, add a "String User Profile Item" for this context data field to the "Rows On Admin Detail Page" in the Administrators Management".

Note that this context data item must also be configured in the corresponding admin persister.

When using the default database schema the field "realm" is intended for this purpose.

Attributes
Plugin-Link
Mandatory
Assignable plugins
User Realm Context Data Name (userRealmContextDataName)
Description
The name of the context data field where the user's realm is stored. In the standard IAM database schema the field "realm" is reserved for this purpose. Users inherit the realm from the administrator who created them. Therefore, it is recommended to make this context data item readonly on users or to not show it at all.

Note that this context data item must also be configured in the corresponding user persister.

When using the default database schema the field "realm" is intended for this purpose.

Attributes
Plugin-Link
Mandatory
Assignable plugins
YAML Template (with default values)

type: RealmAdministration
id: RealmAdministration-xxxxxx
displayName: 
comment: 
properties:
  adminRealmContextDataName:
  userRealmContextDataName: