AuthMappingProfile

AuthMappingProfile
AuthMappingProfile
JSON Example
{
    "_last_modified": "string",
    "allow_unlabelled_access": false,
    "description": "string",
    "dynamic_role_filters": [
        {
            "enabled": false,
            "match_label": {
                "key": "string",
                "values": [
                    "string"
                ]
            },
            "match_operation": "string",
            "name": "string"
        }
    ],
    "mapping_rules": [
        {
            "assign_policy": "string",
            "assign_role": "string",
            "assign_tenant": "string",
            "assign_userprofile": "string",
            "attribute_match": {
                "criteria": "string",
                "name": "string",
                "values": [
                    "string"
                ]
            },
            "default_tenant_ref": "string",
            "group_match": {
                "criteria": "string",
                "groups": [
                    "string"
                ]
            },
            "index": 0,
            "is_superuser": false,
            "policy_attribute_name": "string",
            "role_attribute_name": "string",
            "role_refs": [
                "string"
            ],
            "tenant_attribute_name": "string",
            "tenant_refs": [
                "string"
            ],
            "userprofile_attribute_name": "string",
            "userprofile_ref": "string"
        }
    ],
    "name": "string",
    "tenant_ref": "string",
    "type": "string",
    "url": "string",
    "uuid": "string"
}
string
_last_modified
Read-Only  

UNIX time since epoch in microseconds. Units(MICROSECONDS).

boolean
allow_unlabelled_access
Optional
Constraints: default: true

Allow access to unlabelled objects. Field introduced in 32.1.1. Allowed with any value in Enterprise, Enterprise with Cloud Services edition.

string
description
Optional

Description for the AuthMappingProfile. Field introduced in 22.1.1. Allowed with any value in Enterprise, Enterprise with Cloud Services edition.

array of RoleFilter
dynamic_role_filters
Optional

Filters for granular object access control based on object labels. Multiple filters are merged using the AND operator. If empty, all objects according to the privileges will be accessible to the user. Field introduced in 32.1.1. Maximum of 4 items allowed. Allowed with any value in Enterprise, Enterprise with Cloud Services edition.

mapping_rules
Optional

Rules list for tenant or role mapping. Field introduced in 22.1.1. Minimum of 1 items required. Allowed with any value in Enterprise, Enterprise with Cloud Services edition.

string
name
Required  

Name of the AuthMappingProfile. Field introduced in 22.1.1. Allowed with any value in Enterprise, Enterprise with Cloud Services edition.

string
tenant_ref
Optional

Tenant ref for the auth mapping profile. It is a reference to an object of type Tenant. Field introduced in 22.1.1. Allowed with any value in Enterprise, Enterprise with Cloud Services edition.

string
type
Required  

Type of the Auth Profile for which these rules can be linked. Enum options - AUTH_PROFILE_LDAP, AUTH_PROFILE_TACACS_PLUS, AUTH_PROFILE_SAML, AUTH_PROFILE_PINGACCESS, AUTH_PROFILE_JWT, AUTH_PROFILE_OAUTH, AUTH_PROFILE_CLIENT_CERT. Field introduced in 22.1.1. Allowed with any value in Enterprise, Enterprise with Cloud Services edition.

string
url
Read-Only  

url

string
uuid
Optional

UUID of the AuthMappingProfile. Field introduced in 22.1.1. Allowed with any value in Enterprise, Enterprise with Cloud Services edition.