Hello,

 

my requirement is to have a user in Syncope, who is able to administrate
other users in the same realm, but who may not see the list of other realms.

Is it possible?

 

I have configured a role, with following entitlements on the realm:

"entitlements":[

                "ACCESS_TOKEN_LIST",

                "ANYTYPE_LIST",

                "ANYTYPE_READ",

"ANYTYPECLASS_LIST",

                 "ANYTYPECLASS_READ",

                "DOMAIN_READ",

                 "GROUP_DELETE", 

                 "GROUP_UPDATE",      

                 "GROUP_CREATE", 

                 "GROUP_LIST", 

                 "GROUP_READ",

                 "GROUP_SEARCH",

                 "MEMBERSHIP_DELETE", 

                 "MEMBERSHIP_UPDATE",         

                 "MEMBERSHIP_CREATE", 

                 "MEMBERSHIP_LIST", 

                 "MEMBERSHIP_READ",

                "REALM_LIST",

                "RELATIONSHIPTYPE_LIST",

                "RELATIONSHIPTYPE_READ",

                "ROLE_DELETE", 

                 "ROLE_UPDATE", 

                 "ROLE_CREATE", 

                  "ROLE_LIST", 

                  "ROLE_READ",

                  "SCHEMA_LIST",

                  "USER_SEARCH",

            "USER_DELETE",

            "USER_CREATE",

            "USER_UPDATE",

            "USER_READ"],

  "realms":["/Firma1"],

 

But if the user having this role and being defined on the realm "/Firma1"
enters the "Realms" in the console, he is able to see the list of all
realms:



 

Thank you for your help and regards,

 

Maria Barth



<html><body>
<font color="#666666" face="Arial" size="2">Unsere neusten Aktionen rund um 
unsere Produkte finden Sie unter: <a 
href="http://www.cad-schroer.ch/emailaction/"; target="_blank">News & 
Events</a></font>
<p align="left">
<table width="600" border="0" cellspacing="0" cellpadding="0">
  <tr> 
    <td colspan="5" height="1" bgcolor="#666666"></td>
  </tr>
    <tr> 
    <td colspan="5" height="10"></td>
  </tr>
  <tr> 
    <td width="200" height="15"><font color="#666666" face="Arial" 
size="2"><b>CAD Schroer GmbH</b></font></td>
    <td width="1" height="15">&nbsp;</td>
    <td width="200" height="15"><font color="#666666" face="Arial" 
size="2"><b>Geschaeftsfuehrer:</b></font></td>
    <td width="1" height="15">&nbsp;</td>
    <td width="200" height="15"><font color="#666666" face="Arial" 
size="2"><b>Tel.:</b> +49 2841-9184-0</font></td>
  </tr>
  <tr> 
    <td width="200" height="15"><font color="#666666" face="Arial" 
size="2">Fritz-Peters-Strasse 11</font></td>
    <td width="1" height="15">&nbsp;</td>
    <td width="200" height="15"><font color="#666666" face="Arial" 
size="2">Michael Schroer</font></td>
    <td width="1" height="15">&nbsp;</td>
    <td width="200" height="15"><font color="#666666" face="Arial" 
size="2"><b>Fax: </b>+49 2841-9184-44</font></td>
  </tr>
  <tr> 
    <td width="200" height="15"><font color="#666666" face="Arial" 
size="2">47447 Moers</font></td>
    <td width="1" height="15">&nbsp;</td>
    <td width="200" height="15"><font color="#666666" face="Arial" 
size="2">Thomas Schubert</font></td>
    <td width="1" height="15">&nbsp;</td>
    <td width="250" height="15"><font color="#666666" face="Arial" 
size="2"><b>E-Mail:</b> i...@cad-schroer.de</font></td>
  </tr>
  <tr> 
    <td width="200" height="15"><font color="#666666" face="Arial" 
size="2">Deutschland</font></td>
    <td width="1" height="15">&nbsp;</td>
    <td width="200" height="15"><font color="#666666" face="Arial" 
size="2">Amtsgericht Kleve HRB 5339</font></td>
    <td width="1" height="15">&nbsp;</td>
    <td width="250" height="15"><font color="#666666" face="Arial" 
size="2"><b>Web:</b> <a 
href="../dereferrer?redirectUrl=http%3A%2F%2Fwww.cad-schroer.de" 
target="_blank">www.cad-schroer.de</a></font> 
    </td>
  </tr>
</table>
</font></p>
</body></html>

Reply via email to