Role Configuration
This page describes all configuration fields available when creating or editing a role group in IdentitySuite.
Roles are used to group users under shared access policies and permission sets. In edit mode, additional metadata is shown to support auditing and membership tracking.
Role
This tab defines the identity of the role group.
Claims
This tab allows you to define a list of claims associated with the role. These claims are used for internal reference, grouping logic, or external integrations. Unlike user claims, role claims are not currently included in issued tokens.
- Key: Selected from a predefined list of supported claim types, including standard OpenID fields (e.g.
role,department,tenant). - Value: Free-form input that defines the value of the claim for the role.
- Action: Use the add button to insert new claims. Claims can be edited or removed as needed.
- Token Behavior: Role claims are not automatically propagated to access or identity tokens.
Informations
This tab displays read-only metadata about the role. These details are useful for auditing, diagnostics, and statistics.
- Role Id: Unique identifier for the role group, used internally for reference and assignment.
- Member Count: Number of users currently assigned to this role.
- Created On: Timestamp of when the role was originally created.
- Last Updated: Timestamp of the most recent modification to the role’s metadata or membership.