Hi,

Actually I tried most of the combinations and the smallest set of
permissions allowing users to create roles is by selecting the whole
"Identity" permissions block. Why ????
Sometimes we want some type of users to be able to only create users and
assign them to some roles, the rest of the application (IdP, SP, Key
stores, Workflow mgt, etc.) isn't trivial to them and is not even in their
scope of responsibility. Why such limitation?

Regards,
Hanen

On Wed, Jan 4, 2017 at 1:32 PM, Chamila Wijayarathna <
[email protected]> wrote:

> Hi,
>
> It looks like you need to have '/permission/admin/manage/identity' to do
> this using management console. However, when looking at code if you are
> doing it using API calls, having "User Management" and "Role Management"
> should be enough to do this.
>
> It should work with "Roles Management" IMO, I'm not sure why it's not
> implemented like that.
> @Johann, Darshana : Any idea on this?
>
> On Wed, Jan 4, 2017 at 10:42 PM, Hanen Ben Rhouma <[email protected]>
> wrote:
>
>>
>> Hello,
>>
>> What is the permission that gives the user the possibility to create
>> roles and assign users to them? I tried "Roles Management" permission but
>> it's not doing the trick.
>>
>>
>> Regards,
>> Hanen
>>
>> _______________________________________________
>> Dev mailing list
>> [email protected]
>> http://wso2.org/cgi-bin/mailman/listinfo/dev
>>
>>
>
>
> --
> Chamila Dilshan Wijayarathna,
> PhD Research Student
> The University of New South Wales (UNSW Canberra)
> Australian Centre for Cyber Security
> Australian Defence Force Academy
> PO Box 7916, Canberra BA ACT 2610
> Australia
> Mobile:(+61)416895795 <+61%20416%20895%20795>
>
>
_______________________________________________
Dev mailing list
[email protected]
http://wso2.org/cgi-bin/mailman/listinfo/dev

Reply via email to