← Back to plugin index

Role-based Gateway Role

Description
Provides a Airlock Gateway role conditional on the presence of a user role.
Type name
UserRoleWafCredentialProvider
Class
com.airlock.iam.login.application.configuration.targetapp.UserRoleWafCredentialProviderConfig
May be used by
Properties
User Role Name (userRoleName)
Description
The name of a user role. If the user has this role on the database / persistence layer, an Airlock Gateway role is added as follows:
  • If the "Gateway Mapping Role" is not defined, the user role name is used as Airlock Gateway role. In this case, the role name must not include special characters.
  • Otherwise, the "Gateway Mapping Role" is used as Airlock Gateway role.
Attributes
String
Mandatory
Gateway Mapping Role (wafCredentialName)
Description
The name can be defined in case a name different from the 'User Role Name' must be used. Please refer to the property description of 'User Role Name'.
Attributes
String
Optional
Length <= 50
Validation RegEx: [a-zA-Z0-9_.\-]+
Idle Timeout [s] (idleTimeout)
Description
The WAF credential's idle timeout in seconds. The credential will be removed after the WAF session has been idle for this duration.
Attributes
Integer
Optional
Lifetime [s] (lifetime)
Description
The WAF credential's lifetime in seconds. The credential will be removed from the WAF session after this duration.
Attributes
Integer
Optional
YAML Template (with default values)

type: UserRoleWafCredentialProvider
id: UserRoleWafCredentialProvider-xxxxxx
displayName: 
comment: 
properties:
  idleTimeout:
  lifetime:
  userRoleName:
  wafCredentialName: