Static and Dynamic Security Conditions

As you've learned in this chapter, both roles and security policies can dynamically evaluate a set of conditions at run time. You can specify a security policy that allows access to a resource through a specific role, and you can dynamically assign users these roles as necessary. When you do this, you're controlling authorization based on which user or group can access the resource. Alternatively, you can define a static role and create a dynamic security policy that allows access to the static role depending on the time of day, for example. By adding conditions to a security policy, you're controlling access to a resource based on the resource itself rather than the roles that are allowed to access the ...

Get Oracle WebLogic Server 11g Administration Handbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.