RBAC
role based access control for apps and the management
APIs - always enforced, grants decide who can do what
Groups
0 groups - user id lists, usable
in grants
+ Add group
No groups defined
Roles
0 roles - permission sets; the
built-in admin role
always exists
+ Add role
No roles defined
Grants
2 grants - who gets which roles
on which apps, services and bindings
+ Add grant
| Description |
Users / groups |
Roles |
Targets |
Actions
|
| Default: authenticated principals can access and list apps |
*
|
openrun-user
|
all
|
|
| Monitor access for anonymous users for demo |
anonymous
|
openrun-monitor
|
all
|
|