Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  1. First, define the required roles in your IDP. The process is different according to the IDP you use, so please check its product documentation.

  2. In the Devo Platform, go to Administration → Roles → IDP role mapping

  3. Click Create in the External roles area. Here's where you have to define the roles you created in your IDP and want to map with existing roles in your Devo domain. You must enter the following information and then click Apply:

External group/role

Enter the name of the group/role created in your IDP. Note that the name must be exactly the same for the process to work. For example, if you created a group in your IDP and named it groups, that's the name you must enter in this field.

Note

Group attribute statement

Note that the group attribute statement must be set to groups to make the role mapping work.

Description

Enter an optional description of the role created.

Choose the authentication methods

You must choose the authentication method used (SAML, OpenID or both). Choosing at least one is mandatory. Note that the authentication method must be activated in your Devo domain to appear on this list.

Select the Devo roles to map to this external role

Choose the Devo role(s) to which you want to map the external role from the available ones in your domain. You can finish this process without selecting any Devo role and choose them later in the Devo roles area.

The newly created role will appear in the External roles area.

...

Rw ui textbox macro
typeinfo

Tip

In case you don't remember the permissions assigned to a specific role in your domain, you can click its name in the Devo roles area to see its details and permissions/resources assigned. You can also view and edit the external roles assigned to a Devo role in this view.

Image RemovedImage Added