- Platform Release 6.5
- Privacera Platform Installation
- Privacera Platform User Guide
- Privacera Discovery User Guide
- Privacera Encryption Guide
- Privacera Access Management User Guide
- AWS User Guide
- Overview of Privacera on AWS
- Configure policies for AWS services
- Using Athena with data access server
- Using DynamoDB with data access server
- Databricks access manager policy
- Accessing Kinesis with data access server
- Accessing Firehose with Data Access Server
- EMR user guide
- AWS S3 bucket encryption
- Getting started with Minio
- Plugins
- How to Get Support
- Coordinated Vulnerability Disclosure (CVD) Program of Privacera
- Shared Security Model
- Privacera Platform documentation changelog
Security Zone
Concepts in Access Management
For conceptual background, see How Access Management Works.
Group data objects into Security Zones for more efficient administration of security policies. Security Zones can not span data sources.
Security Zone administration
Security Zones can only be created, updated, or deleted by a user with the ROLE_SYS_ADMIN role in Access Management.
Users can view, retrieve, and update policies only in security zones in which they have administrator privileges.
Security Zones use in authorization
When a plugin authorizes an access request, it determines the Security Zone in which the accessed data source resides. If the data source matches a Security Zone, only the policies of that Security Zone are used to authorize the access. If the data source does not match a Security Zone, the policies in the default (unnamed) Security Zone are used to authorize the access.
Create a Security Zone
From the home page, click Access Management > Security Zone.
On the Security Zones page, click + (Create Zone).
Enter the zone details and click Save.
Edit a Security Zone
From the home page, click Access Management > Security Zone.
On the Security Zones page, select the zone and click Edit. The Add/Edit Zones page displays.
Modify the zone details and click Save.
Delete a Security Zone
From the home page, click Access Management > Security Zone.
On the Security Zones page, select the zone and click Delete.
A confirmation message appears.
Click Yes.