Accounts

AppControl can use either local accounts or SSO to authenticate users. The Accounts page is visible to users with the Platform Administrator role and can be used to manage accounts, roles, and SSO settings.

For more information about user roles and access to features in AppControl see the following:

User Roles & Access
Accounts

The accounts tab provides an overview of all accounts currently configured in the AppControl. Use this overview to manage the roles that each user has. Note the following about user roles:

  • The default user role is 'NoAccess'. If you are using SSO you can configure the SSO user provisioning settings to use a different default role.

  • There basic user role needed to use the complete feature set of AppControl is 'AppViewer'. This role provides read-only access to all apps that a user has been configured to view. All users (including the Platform Administrator) must have this user role.

  • A limited access role called 'PolicyViewer' is also available. Use this role instead of the 'AppViewer role' if you want to limit the functionality of a user to only Policies and Insights.

Authorized Domains

Authorized domains is used for calculating user license metrics. When counting whether users are internal or external to your organization, AppControl uses the domains listed here. Add the domains that are internal to your organization so that the user metrics displayed on the AppControl dashboard are accurate.

SSO

Depending on the authentication service you are using for AppControl (configured by setting the MxOM_Core.AuthenticationService constant), additional settings will be available here.

  • Local. There are no additional settings available.

  • Mendix SSO. There are no additional settings available. Note: Mendix SSO only works if you have deployed AppControl to the Mendix Cloud.

  • SAML. The standard Mendix SAML module is used. For further information on how to configure the SAML module please refer to the Mendix SAML documentation.

Last updated