Role-based Gateway Role
Description
Provides a Airlock Gateway role conditional on the presence of a user role.
May be used by
Properties
User Role Name (
userRoleName) Description
The name of a user role. If the user has this role on the database / persistence layer, an Airlock Gateway role is added as follows:
- If the "Gateway Mapping Role" is not defined, the user role name is used as Airlock Gateway role. In this case, the role name must not include special characters.
- Otherwise, the "Gateway Mapping Role" is used as Airlock Gateway role.
Attributes
String
Mandatory
Gateway Mapping Role (
wafCredentialName) Description
The name can be defined in case a name different from the 'User Role Name' must be used. Please refer to the property description of 'User Role Name'.
Attributes
String
Optional
Length <= 50
Validation RegEx: [a-zA-Z0-9_.\-]+
Idle Timeout [s] (
idleTimeout) Description
The WAF credential's idle timeout in seconds. The credential will be removed after the WAF session has been idle for this duration.
Attributes
Integer
Optional
Lifetime [s] (
lifetime) Description
The WAF credential's lifetime in seconds. The credential will be removed from the WAF session after this duration.
Attributes
Integer
Optional
YAML Template (with default values)
type: UserRoleWafCredentialProvider
id: UserRoleWafCredentialProvider-xxxxxx
displayName:
comment:
properties:
idleTimeout:
lifetime:
userRoleName:
wafCredentialName: