Target Application
applicationId) applicationSelector) The first application that matches the forward URI is used.
The selector is ignored for the default application, which is always used when none of the other applications match.
In combination with Authorization Conditions in Protected Self-Service Flows, the Application Selector can be used to trigger step-up authentication.
authenticationFlow) authorizationFlow) airlockGatewayRoles) These are the Airlock Gateway roles (credentials) that are set after the authentication flow and the corresponding authorization flow (if configured) have successfully been completed. These roles are used on the Gateway to control the access to protected backends. If backend applications need user roles, those must be configured in the identity propagators.
Depending on the Gateway Settings, these roles either replace the current Gateway roles or are added to them (default).
identityPropagation) usernameToPropagateProvider)
type: TargetApplication
id: TargetApplication-xxxxxx
displayName:
comment:
properties:
airlockGatewayRoles:
applicationId:
applicationSelector:
authenticationFlow:
authorizationFlow:
identityPropagation:
usernameToPropagateProvider: