Network Deployment (Distributed operating systems), v8.0 > Secure applications and their environment > Secure Service integration > Secure service integration > Administer authorization permissions > Administer topic roles
Enable topic role inheritance
Service integration bus security uses role-based authorization. When messaging security, and topic level security are enabled, and users and groups require access in the sender and receiver roles to access a topic in a publish/subscribe topic hierarchy. By default, topics inherit these roles from the parent topic. If you want topic role inheritance has been disabled for a particular topic, you can restore it by using the admin console. Verify the following conditions are met:
In this task you use the admin console to restore topic role inheritance for selected topics. A topic can only inherit the sender and receiver roles from the parent topic in the topic hierarchy.
- Messaging security is enabled. See Disable bus security.
- Topic level security is enabled for the topic space. Check the setting Topic Access Check Required? in the topic space destination configuration. See Configure bus destination properties.
Procedure
- Log into the admin console.
- Click Service integration -> Buses -> security_value -> [Authorization Policy] Manage topic access roles -> topic_space_name > topic_name . The Topic access roles panel lists users and groups that have been assigned role types for the selected topic.
- Expand the topic name header to display details of the users and groups that have one or more access roles for this topic.
- Select the Inherit sender role from parent topic check box.
- Select the Inherit receiver role from parent topic check box.
- Click OK to save your changes.
- Save your changes to the master configuration.
Results
The select topic inherits access roles from the parent topic. The Topic access roles panel displays the inherited access roles for the topic.
Messaging security
Topic security
Related
Access role assignments for bus security resources
Define topic role inheritance by using wsadmin