1.1 Creating New rules
- Go to “Settings” → “Authorization roles”, this will pen the Role management window.
| |
- Click on “New” button; this will open the New role window.
- By default there are no Capability sets or Capabilities shown, this will be addressed in
| |
- Fill role name with any unique value → Click on “Save & close” button.
| |
- Click on the “Select application” button. This will open the “Select application” dialog.
- Using the checkboxes select what application area you would like to add Capability sets or Capabilities from.
Click on “Save and close” to display the Capability sets and Capabilities.
| |
- Using the checkboxes provided select the Capability sets and Capabilities that you would like this role to have
| |
- When you have selected all the Capability sets and Capabilities you would like to assign to this Role, click on the “Save and close” button. The Role will now be available to be assigned to a user.
| |
1.2 Rules for Machine Accounts
All machine accounts will have a new role created that will be used by that machine account or group of machine accounts. Like the user account the machine account will start with the prefix "app_" and use the same name as the User account. Roles will be limited to only required Capabilities and may have an Authorization policy put in place to limit when the machine account may access the FOLIO system.
The steps outlined in 1.1 Creating New rules can eb followed to create the new rule.