-
Notifications
You must be signed in to change notification settings - Fork 7.9k
Description
There is implementation of AuthorizationSchema which serves for FGAP purpose.
keycloak/server-spi-private/src/main/java/org/keycloak/authorization/AdminPermissionsSchema.java
Lines 38 to 44 in 4e3e731
| public static final String USERS_RESOURCE_TYPE = "Users"; | |
| public static final ResourceType USERS = new ResourceType(USERS_RESOURCE_TYPE, Set.of("manage")); | |
| public static final AdminPermissionsSchema SCHEMA = new AdminPermissionsSchema(); | |
| private AdminPermissionsSchema() { | |
| super(Map.of(USERS_RESOURCE_TYPE, USERS)); | |
| } |
We should add "Roles" resource type and its scopes.
As well as the appropriate AdminPermissionEvaluation implementation to support E2E experience.