← Back to plugin index

Tag-based Gateway Role

Description
Provides an Airlock Gateway role conditional on the presence of a tag.
Type name
TagBasedGatewayRole
Class
com.airlock.iam.login.application.configuration.targetapp.TagBasedGatewayRoleConfig
May be used by
Properties
Tag (tag)
Description
If the user has this tag, an Airlock Gateway role is added as follows:
  • If the 'Gateway Role Name' is not defined, the tag name is used as an Airlock Gateway role.
  • Otherwise, the 'Gateway Role Name' is used as an Airlock Gateway role.
  • If 'Ignore Tag Timeouts' is not selected:
    • If this plugin has no lifetime, the tag's lifetime, if present, is added to the Airlock Gateway role.
    • If this plugin has no idle timeout the tag's idle timeout, if present, is added to the Airlock Gateway role.
  • Otherwise, the lifetime and idle timeout from this plugin are used.
Attributes
Plugin-Link
Mandatory
Assignable plugins
Gateway Role Name (airlockGatewayRole)
Description
The name can be defined in case a name different from the tag name must be used. Please refer to the property description of 'Tag'.
Attributes
String
Optional
Length <= 50
Validation RegEx: [a-zA-Z0-9_.\-]+
Ignore Tag Timeouts (ignoreTagTimeouts)
Description
If enabled, the given timeouts in a tag are overwritten by the values configured in this plugin. Otherwise, all tag timeouts are unchanged.
Attributes
Boolean
Optional
Default value
false
Idle Timeout [s] (idleTimeout)
Description
The WAF credential's idle timeout in seconds. The credential will be removed after the WAF session has been idle for this duration.
Attributes
Integer
Optional
Lifetime [s] (lifetime)
Description
The WAF credential's lifetime in seconds. The credential will be removed from the WAF session after this duration.
Attributes
Integer
Optional
YAML Template (with default values)

type: TagBasedGatewayRole
id: TagBasedGatewayRole-xxxxxx
displayName: 
comment: 
properties:
  airlockGatewayRole:
  idleTimeout:
  ignoreTagTimeouts: false
  lifetime:
  tag: