feat(security): add FleetAdmin authorization policy
This commit is contained in:
@@ -89,6 +89,9 @@ public static class ServiceCollectionExtensions
|
|||||||
// appsettings (e.g. "ot-driver-operator": "DriverOperator").
|
// appsettings (e.g. "ot-driver-operator": "DriverOperator").
|
||||||
o.AddPolicy("DriverOperator", policy =>
|
o.AddPolicy("DriverOperator", policy =>
|
||||||
policy.RequireRole("DriverOperator", "FleetAdmin"));
|
policy.RequireRole("DriverOperator", "FleetAdmin"));
|
||||||
|
|
||||||
|
// FleetAdmin: full administrative access; gates fleet-wide pages such as RoleGrants.
|
||||||
|
o.AddPolicy("FleetAdmin", policy => policy.RequireRole("FleetAdmin"));
|
||||||
});
|
});
|
||||||
|
|
||||||
return services;
|
return services;
|
||||||
|
|||||||
Reference in New Issue
Block a user