Defining access control policy elements using XML

You can make changes access control policies and their parts by editing the XML files in which they are defined. Once you have made the changes, load them into the database to activate them.

Before you begin

Before editing the access control configuration files, ensure that you have familiarized yourself with Commerce+ access control policies. If you have customizations that require different policies than the defaults, you can edit the configuration files to establish the necessary protections.

About this task

To make extensive changes to access control, directly edit one or more of the configuration XML files. These files allow you to customize how creating or modifying actions, relationships, resources and more are managed in the system. This method is required for changes such as creating or modifying actions, relationships and groups, as listed below.

You can change the following by editing and then loading the appropriate XML files:

  • Creating or modifying an action
  • Creating or modifying a relationship
  • Creating or modifying a relationship group
  • Creating or modifying a resource
  • Creating or modifying attributes
  • Creating or modifying access groups using complex criteria
  • Creating or modifying resource groups using complex criteria
  • Creating a role-based policy for views
  • Changing the action group in a role-based policy for views
  • Creating or modifying a policy group
  • Associating policies with policy groups

You can manipulate the XML files to perform the following authorization tasks:

What to do next

Once you have made your changes, load them into the database using the procedure described in Loading access control policy data.