adminRoleExecute (Command)

Prev Next

Availability: OneSpan Authentication Server 3.29 and later

Scenario: Administration

Support:  full-sdk 

The adminRoleExecute command executes administrative operations to manage administrator roles. To assign an administrator role to or remove it from an user account, use the userExecute command. 

Table: adminRoleExecute commands (SOAP administration)
CommandDescription
ADMINROLECMD_CREATECreates a new administrator role (see ADMINROLECMD_CREATE).
ADMINROLECMD_DELETEDeletes an existing administrator role (see ADMINROLECMD_DELETE).
ADMINROLECMD_UPDATEUpdates an existing administrator role (see ADMINROLECMD_UPDATE).
ADMINROLECMD_VIEWRetrieves the settings of an existing administrator role (see ADMINROLECMD_VIEW).

Parameters

Table: adminRoleExecute input parameters
Parameter nameData typeDescription

sessionID

String

Required. The session identifier of the current administrative session. The logon command returns this identifier after a successful logon (see logon (Command)).

cmd

AdminRoleCmdIDEnum

Required. The operation to be executed. See Table: adminRoleExecute commands (SOAP administration).

attributeSet

AdminRoleAttributeSet

Required. A set containing zero or more attribute fields.

Table: adminRoleExecute output parameters
Parameter nameData typeDescription

results

AdminRoleResults

Required. Result structure containing return and status codes and a list of zero or more result attribute fields.

The following field attributes are available for the operations of this command:

Table: adminRoleExecute field attributes
Attribute nameData typeDescription
ADMINROLEFLD_CREATE_TIMEDateTime

The date and time the data record was created.

ADMINROLEFLD_DESCRIPTIONString

A custom description for the administrator role.

Up to 1024 characters.

ADMINROLEFLD_LOGICAL_ADMIN_PRIVILEGES_TEMPLATEString

A human-readable, comma-separated list of the administrative privileges assigned to the administrator role. Each administrative privilege is specified as follows:

admin_priv_name [true|false]

For a list of possible privileges, see SOAP authentication.

Up to 1024 characters.

ADMINROLEFLD_MODIFY_TIMEDateTime

The date and time the data record was last modified.

ADMINROLEFLD_NAMEString

The name of the administrator role.

Up to 255 characters.

ADMINROLEFLD_TEMPLATEIDString

A unique identifier of the administrator role that is automatically generated when the administrator roles is created.

Up to 60 characters.

ADMINROLECMD_CREATE

ADMINROLE_CREATE defines a new administrator role.

Parameters

The following attributes can be specified in the attributeSet input parameter of this command:

 Table: ADMINROLECMD_CREATE (Supported input attributes)
Attribute nameOptionality
ADMINROLEFLD_DESCRIPTIONOptional
ADMINROLEFLD_LOGICAL_ADMIN_PRIVILEGES_TEMPLATEOptional
ADMINROLEFLD_NAMEMandatory

The following attributes will be specified in the results output parameter of this command:

 Table: ADMINROLECMD_CREATE (Supported output attributes)
Attribute nameReturned
ADMINROLEFLD_CREATE_TIMEAlways
ADMINROLEFLD_DESCRIPTIONIf defined
ADMINROLEFLD_LOGICAL_ADMIN_PRIVILEGES_TEMPLATEIf defined
ADMINROLEFLD_MODIFY_TIMEAlways
ADMINROLEFLD_NAMEAlways
ADMINROLEFLD_TEMPLATEIDAlways

Requirements

Required administrative privileges:

  • Create Role

ADMINROLECMD_DELETE

ADMINROLECMD_DELETE deletes the specified administrator role.

Parameters

The following attributes can be specified in the attributeSet input parameter of this command:

 Table: ADMINROLECMD_DELETE (Supported input attributes)
Attribute nameOptionality
ADMINROLEFLD_TEMPLATEIDMandatory

This command returns no result attributes.

Requirements

Required administrative privileges:

  • Delete Role

ADMINROLECMD_UPDATE

ADMINROLECMD_UPDATE updates the specified administrator role record.

Parameters

The following attributes can be specified in the attributeSet input parameter of this command:

 Table: ADMINROLECMD_UPDATE (Supported input attributes)
Attribute nameOptionality
ADMINROLEFLD_DESCRIPTIONOptional
ADMINROLEFLD_LOGICAL_ADMIN_PRIVILEGES_TEMPLATEOptional
ADMINROLEFLD_NAMEOptional
ADMINROLEFLD_TEMPLATEIDMandatory

The following attributes will be specified in the results output parameter of this command:

 Table: ADMINROLECMD_UPDATE (Supported output attributes)
Attribute nameReturned
ADMINROLEFLD_CREATE_TIMEAlways
ADMINROLEFLD_DESCRIPTIONIf defined
ADMINROLEFLD_LOGICAL_ADMIN_PRIVILEGES_TEMPLATEIf defined
ADMINROLEFLD_MODIFY_TIMEAlways
ADMINROLEFLD_NAMEAlways
ADMINROLEFLD_TEMPLATEIDAlways

Requirements

Required administrative privileges:

  • Update Role

ADMINROLECMD_VIEW

COMPONENTCMD_VIEW retrieves the settings of the specified client component.

Parameters

The following attributes can be specified in the attributeSet input parameter of this command:

 Table: ADMINROLECMD_VIEW (Supported input attributes)
Attribute nameOptionality
ADMINROLEFLD_TEMPLATEIDMandatory

The following attributes will be specified in the results output parameter of this command:

 Table: ADMINROLECMD_VIEW (Supported output attributes)
Attribute nameReturned
ADMINROLEFLD_CREATE_TIMEAlways
ADMINROLEFLD_DESCRIPTIONIf defined
ADMINROLEFLD_LOGICAL_ADMIN_PRIVILEGES_TEMPLATEIf defined
ADMINROLEFLD_MODIFY_TIMEAlways
ADMINROLEFLD_NAMEAlways
ADMINROLEFLD_TEMPLATEIDAlways

Requirements

Required administrative privileges:

  • View Role