Layer7 API Management

Expand all | Collapse all

Is fine grained authorization (ABAC) supported by CA API Management?

  • 1.  Is fine grained authorization (ABAC) supported by CA API Management?

    Posted Aug 18, 2017 03:21 AM

    Does CA API Management support fine grained authorization? I saw one blog which explains how to integrate Axiomatics with CA API Management. Can't CA API Management itself support fine grained authorization because it can also connect to database, to LDAP for retrieving attributes and conditions can be set using assertions as in the case of Axiomatics. My understanding is using these assertions, fine grained authorization should be supported by CA API Management itself. so if this is the case, why Axiomatics is being integrated with CA API Management? What are the additional features supported by Axiomatics?



  • 2.  Re: Is fine grained authorization (ABAC) supported by CA API Management?
    Best Answer

    Broadcom Employee
    Posted Nov 22, 2018 09:58 PM

    While it is possible to do this with the Gateway policy language, some customers prefer to manage the authorization rules in Axiomatics and leverage XACML to communicate between the PEP (Gateway) and the PDP (Axiomatics).