KOBIL Condition - User Role
KOBIL Condition - User Role
The main task of this execution is to verify multiple Roles of the user.
| Protocol | OpenID Connect 1.0 |
|---|---|
| HTTP method | GET |
| Type | Browser Flow |
| Endpoint | Authorization Endpoint |
| Flow Supported | Authorization code flow Implicit flow Hybrid flow |
| Response | ID Token, Access Token, Refresh Token |
| Response Mode | query, form_post, fragment |
How to configure
To access the config of the execution press the Actions button and select Config. The authenticator configuration screen will appear. Then enter your config data.

Configuration
Parameters involved in KOBIL Condition - User Role
| Parameter | Description |
|---|---|
| Alias | Display name of configuration, which occurs in authentication flow. (Example: User Role) |
| Roles To Check | Configure the Roles to be verified while authenticating. |
| Should be assigned all roles | If enabled all the Roles configured in the Roles To Check will be mandatory to authenticate. |
| Negate output | If enabled the output will be turned to negative. |

User Flow
Execution Flow
- KOBIL Condition - User Role must be preceded by 1FA since it procures a user's identity validation from this precedent Authenticator. For instance: KOBIL Username Password Form.
- User's identity is validated with KOBIL Username Password Form.
- KOBIL Condition - User Role authenticator is to verify multiple Roles of the user.