DIGIT Urban
PlatformDomainsAcademyDesign SystemFeedback
v2.3
v2.3
  • DIGIT
  • Training Event
  • Architecture
  • Roadmap
  • Release Notes
    • MDMS Configuration & Service Build Updates
    • FSM Release Notes
    • HRMS Release Notes
    • EDCR Release Notes
    • Bill Amendment Release Notes
  • Products & Modules
    • mCollect (MCS)
      • mCollect Master Data Templates
        • Service Category
        • Service Sub Category
        • Service Sub Category GL Code Mapping
      • mCollect Roadmap
      • mCollect User Manual
        • MCS Citizen User Manual
        • MCS Employee User Manual
    • Trade License (TL)
      • TL Brochure
      • TL Roadmap
      • TL Module Functional Specifications
      • TL Workflows
      • TL Implementation Guide
      • TL Master Data Templates
        • Trade Type
        • Trade Sub Type
        • Trade Category
        • Trade License Fee
        • Structure Sub Type
        • Structure Type
        • Trade License Document Attachment
      • TL Service Configuration
      • TL User Manual
        • Citizen User Manual
        • Employee User Manual
      • TL Demo Script
    • Public Grievances & Redressal (PGR)
      • PGR Brochure
      • PGR Roadmap
      • PGR Module Functional Specifications
      • PGR Workflows
      • PGR Master Data Templates
        • Grievance Type
        • Grievance Sub Type
      • PGR Service Configuration
        • PGR Migration
      • PGR Implementation Guide
      • PGR User Manual
        • Complaint Types List
        • Employee User Manual
        • Citizen User Manual
      • PGR Demo Script
    • Property Tax
      • PT Brochure
      • PT Roadmap
      • PT Module Functional Specifications
      • PT Workflows
      • PT Implementation Guide
      • PT Master Data Templates
        • Mutation Fee
        • Rebate Rates
        • Penalty Rates
        • Interest Rates
        • Tax Rates
        • Unit Rates
        • Special Category Documents
        • Owner Special Category
        • Ownership Sub Category
        • Ownership Category
        • Usage Category Detail
        • Road Type
        • Construction Type
        • Property Type
        • Property Sub Type
        • Usage Category Major
        • Usage Category Minor
        • Usage Category Sub Minor
      • PT Data Migration
      • PT User Manual
        • Citizen User Manual
        • Employee User Manual
    • Water & Sewerage (W&S)
      • W&S Module Functional Specifications
      • Sewerage Charges Master Data Templates
        • Sewerage Rates
        • Sewerage Penalty Rates
        • Sewerage Interest Rates
      • Water Charges Master Data Templates
        • Water Rates (Metered)
        • Pipe Size Types
        • Water Source Types
        • Water Rates (Non-Metered)
        • Water Penalty Rates
        • Water Interest Rates
      • W&S User Manual
        • W&S Citizen User Manual
        • W&S Employee User Manual
    • Online Building Plan Approval System (OBPAS)
      • OBPAS Module Functional Specifications
      • OBPAS Master Data Templates
        • Fee Structure
        • NOC Departments
        • Stakeholders Type
        • List Of Services
        • Service-Wise Documents
        • Building Occupancy
        • Building Sub Occupancy
        • Building Usage
        • Inspection Checklist
        • Town Planning Schemes
      • OBPAS Brochure
      • OBPAS User Manual
        • OBPAS Citizen User Manual
        • OBPAS Employee User Manual
    • Faecal Sludge Management (FSM)
      • FSM Service Configuration
      • FSM Calculator v1.0
      • FSM Vendor Registry v1.0
      • FSM Vehicle Registry v1.0
      • FSM User Manual
        • Citizen User Manual
        • Employee User Manual
        • DSO User Manual
        • Septage Treatment Plant Operator User Manual
    • Finance
      • Finance Implementation Guide
      • Finance User Manual
        • Employee User Manual
        • Admin User Manual
        • Finance Reports Manual
      • Finance Module Functional Specifications
      • Finance Master Data Templates
        • Bank Account
        • Chart Of Accounts
        • Funds
        • Function
        • Contractors
        • Suppliers
        • Schemes
        • Sub Schemes
        • Banks
        • Bank Branch
        • Deduction
        • Opening Balances
        • Sub Ledger Category
        • Sub Ledger Master
    • Fire NOC
      • Fire NOC Master Data Templates
        • Building Usage Type
        • Building Sub Usage Type
        • Fire Station Master
        • Areas Served Master
        • Fire Station Mapping
        • Fire NOC Fee
      • Fire NOC User Manual
        • Fire NOC Citizen User Manual
        • Fire NOC Employee User Manual
    • DIGIT Service Configuration
      • Core Services
        • Workflow Services
        • Location Services
        • User Services
        • Access Control Services
        • PDF Generation Service
        • MDMS (Master Data Management Service)
        • Payment Gateway Service
        • User Session Management In DIGIT
        • Indexer Service
        • URL Shortening Service
      • Business Service
        • Bill Amendment
      • Municipal Service
        • PGR Services 2.0
          • PGR Migration
        • Trade-License Service
        • BPA Service
          • BPA Service Setup and Configuration
          • BPA Calculator Service
          • Land Services
          • Noc Services
      • Utilities
    • Product FAQs
  • Configuration Guide
    • Git Repos
    • Setting up DIGIT
      • Configuring InfraOps
      • Setting up DIGIT Environment
      • Email And SMS Setup
      • FileStore Setup
      • Setting Up SSL Certificate
      • Periodic Log Cleanup
    • Setting up Master Data
      • MDMS Overview
      • Configuring Tenants
      • Configuring Master Data
      • Adding New Master
      • State Level Vs City Level Master
    • Master Data Collection Templates
      • Environment Setup
        • State Level Setup
          • Tenants Information
          • SMS Account Configuration
          • Email Account Configuration
          • Google Play Store Account
          • Payment Gateway Configuration
          • POS Integration Configuration
          • Domain Name Configuration
          • SSL Configuration
          • ULB Departments
          • ULB Designations
          • Localization
          • Google Map Configuration
        • ULB Level Setup
          • Boundary Hierarchies
          • Boundary Data
          • Cross Hierarchy Mapping
          • ULB Bank Accounts
      • Module Setup
        • Web Portals Templates
          • State Portal
          • ULB Portal
        • HRMS Data Templates
          • User Roles
          • System Users
        • Billing And Payments Data Templates
          • Tax Heads
          • Receipt Format
          • Demand Bill Format
        • DSS Data Templates
          • KPI Acceptance
        • Workflow Data Templates
          • Workflow Actions
          • Workflow Levels
          • Workflow Process
          • Workflow Notifications
        • Common Configuration Details
          • Standard Document List
          • Service Document Mapping
          • Checklist
          • Configuring Data FAQs
    • Configuring Workflows
      • Setting Up Workflows
      • Configuring Workflows For An Entity
    • Configuring Services
      • API Dos and Don'ts
      • Setting Up Service Locally
      • Configuring New Reports
        • Types Of Reports Used In Report Service
        • Impact Of Heavy Reports On Platform
      • Customizing PDF Notices And Certificates
        • Integration Of PDF In UI For Download And Print PDF
        • Customizing PDF Receipts & Certificates
    • Persister Configuration
    • Indexer Configuration
    • Setting up a Language
      • Adding New Language
      • Setting Up Default Language For SMS & Emails
    • Configuring Localization
      • Setup Base Product Localization
      • Configure SMS and Email
    • Setting Up SMS Gateway
      • Using The Generic GET & POST SMS Gateway Interface
    • Configuration FAQs
    • Setting Up eDCR Service
    • Adding Roles To System
    • Mapping Roles With APIs
    • DSS Configuration And Setup
      • Building New Dashboards
    • Setting Up Finance Service
    • Adding New APIs For Access
    • Deployment Of App on Play Store
  • Customization Guide
    • Frontend/UI
    • DIGIT Customization
      • API Do's & Don'ts
      • Writing A New Customer
      • Enhancing Existing Service
  • Deployment Guide
    • Setup Requirements
      • Tech Enablement Training - Essential Skills and Pre-requisites
      • DIGIT Rollout Program Governance
      • DevOps Skills Requirements
      • Infra Requirements
      • Team Composition for DIGIT Implementation
      • Infra Best Practices
      • Operational Best practices
      • Why Kubernetes for DIGIT
    • Supported Clouds
      • Google Cloud
      • Azure
      • AWS
      • VSphere
      • SDC
      • NIC
    • Deployment - Key Concepts
      • Security Practices
      • CI/CD
      • Readiness & Liveness
      • Resource Requests & Limits
    • Understanding ERP Stack
      • ERP Monolithic Architecture
      • ERP Hybrid Architecture
      • ERP Coexistence Architecture
      • APMDP-HYBRID-INFRA-ARCHITECTURE
      • eGov SmartCity eGovernance Suite
      • ERP Deployment Process
      • ERP Release Process
      • ERP User Guide
    • Deploying DIGIT Services
      • Deployment Architecture
      • Routing Traffic
      • Backbone Deployment
    • Troubleshooting
      • Distributed Tracing
      • Logging
      • Monitoring & Alerts
  • Training Resources
    • Training Videos
  • Partner Support
    • eGov Enablement Support for DIGIT
    • Troubleshooting Guide
Powered by GitBook

​All content on this page by eGov Foundation is licensed under a Creative Commons Attribution 4.0 International License.

On this page
  • Overview
  • Pre-requisites
  • Key Functionalities
  • Deployment Details
  • Configuration Details
  • Integration Details
  • Integration Scope
  • Integration Benefits
  • Steps to Integration
  • Interaction Diagram
  • Reference Docs
  • Doc Links
  • API List

Was this helpful?

Edit on Git
Export as PDF
  1. Products & Modules
  2. DIGIT Service Configuration
  3. Core Services

Access Control Services

Overview

DIGIT is API based Platform here each API is denoting to a DIGIT resource. Access Control Service (ACS) primary job is to authorise end-user based on their roles and provide access to the DIGIT platform resources. Access control functionality basically works based on below points:

Actions: Actions are events which are performed by a user. This can be an API end-point or Frontend event. This is MDMS master

Roles: Role are assigned to the user, a user can hold multiple roles. Roles are defined in MDMS masters.

Role-Action: Role actions are mapping b/w Actions and Roles. Based on role, action mapping access control service identifies applicable action for the role.

Pre-requisites

Before you proceed with the configuration, make sure the following pre-requisites are met -

  • Java 8

  • MDMS service is up and running

Key Functionalities

  • Serve the applicable actions for a user based on user role (To print menu three).

  • On each action which is performed by a user, access control looks at the roles for the user and validate actions mapping with the role.

  • Support tenant-level role-action. For instance, an employee from Amritsar can have a role of APPROVER for other ULB like Jalandhar and hence will be authorised to act as APPROVER in Jalandhar.

Deployment Details

  1. Deploy the latest version of Access Control Service

  2. Deploy MDMS service to fetch the Role Action Mappings

Configuration Details

Define the roles

{
      "code": "EMPLOYEE",
      "name": "Employee",
      "description": "Default role for all employees"
}

Add the Actions (URL)

{
      "id": {{ACTION_ID}},
      "name": "Create TradeLicense",
      "url": "/tl-services/v1/_create",
      "parentModule": "",
      "displayName": "Create TradeLicense",
      "orderNumber": 0,
      "enabled": false,
      "serviceCode": "tl-services",
      "code": "null",
      "path": ""
}

Add the role action mapping

{
      "rolecode": "EMPLOYEE",
      "actionid": {{ACTION_ID}},
      "actioncode": "",
      "tenantId": "pb"
    }

(The details about the fields in the configuration can be found in the swagger contract)

Integration Details

Integration Scope

Any microservice which requires authorisation can leverage the functionalities provided by access control service.

Integration Benefits

Any new microservice that is to be added in the platform won’t have to worry about authorisation. It can just add it’s role action mapping in the master data and Access Control Service will perform authorisation whenever API for the microservice is called.

Steps to Integration

  1. To integrate with Access Control Service the role action mapping has to be configured(added) in the MDMS service.

  2. The service needs to call /actions/_authorize API of Access Control Service to check for authorisation of any request

Interaction Diagram

Reference Docs

Doc Links

Title

Link

API Contract

API List

Title

Link

PreviousUser ServicesNextPDF Generation Service

Last updated 4 years ago

Was this helpful?

All content on this page by is licensed under a .

https://raw.githubusercontent.com/egovernments/egov-services/master/docs/egov-accesscontrol/contracts/v1-0-1.yml
eGov Foundation
Creative Commons Attribution 4.0 International License
Creative Commons License