Removing users and groups from topic space root roles

Service integration bus security uses role-based authorization. When messaging security is enabled, users and groups require authority to send and receive messages from the topic space root in a publish/subscribe topic hierarchy. By removing users and groups from topic space root roles, you prevent them from accessing the root topic in a selected topic space.

About this task

Topic space root (/) is the highest level topic in a publish/subscribe topic hierarchy. The hierarchy itself is called the topic space. Note that this task applies only to the topic space root; it does not apply to removing users and groups from topics or a topic space. For information about removing users and groups from topic access roles, see Removing users and groups from topic roles, and for removing users and groups from topic space roles, see Removing users and groups from destination roles.

In this task you use the administrative console to remove selected users and groups from the sender and receiver roles for the selected root topic.

Procedure

  1. Log into the administrative console.
  2. Click Service integration -> Buses -> security_value -> [Authorization Policy] Manage topic access roles.
    The Topic spaces panel lists the topic spaces defined on the bus.
  3. Select the topic space you want to work with.
    The selected topic space is displayed in the Topics panel. The root topic (/) is displayed by default.
  4. Select the topic space root.
    The Topic access roles panel lists the role type assignments for the topic space root.
  5. Select the names of the users, groups and group members that you want to remove from all role types for the selected root topic, and click Remove.
  6. Save your changes to the master configuration.

Results

The selected users and groups are removed from all roles for the selected root topic. The Topic access roles panel is updated to show the changes to the access roles assignments.