Sorry, that's what I meant (and how I tested). Replace "realm" with
"realm-role" on my previous message.
- Juca.
On 07/31/2015 12:24 AM, Bill Burke wrote:
No, he's saying each organization is a realm-level role.
On 7/30/2015 9:33 AM, Juraci Paixão Kröhling wrote:
> On 07/29/2015 09:57 AM, Stian Thorgersen wrote:
>> Can you not just add a realm role to represent an "organization"?
>
> So, each organization would be a realm? Not sure that would solve the
> use cases I presented before, specially this part:
>
> - As jsmith is a SuperUser of NOC, but as NOC is only Monitor on Acme,
> Inc, then jsmith is also only Monitor on Acme Sales.
>
> I did try to play a bit with this idea a bit locally, but I'm not sure
> I'm reproducing correctly what you have in mind.
>
> - Juca.
>
> _______________________________________________
> keycloak-dev mailing list
> keycloak-dev(a)lists.jboss.org
>
https://lists.jboss.org/mailman/listinfo/keycloak-dev
>