Skip to content

Allow Access to a Repository

An Impersonation Policy maps identity provider (IdP) users or groups to a repository user. For the value an Impersonation Policy provides, see Impersonation Policy.

To create an Impersonation Policy:

  1. Log in to ALTR through your IdP.
  2. Click Policy in the navigation menu.
  3. Click Create Policy.
  4. Locate the Control access to repository users card and click Create Policy.
  5. Locate the card for your database and click Create Policy.
  6. Enter a Display Name to identify the policy.
  7. Select the Data Source — the repository name as registered in ALTR.
  8. Click Next.
  9. Build the rule statement:
    1. Select a user or group and enter its Name — an individual IdP user or a group (for example, Marketing team) as configured in your IdP.
    2. Select the Repository User the IdP user or group will impersonate.
    3. (Optional) Expand IdP User/Group to add additional users or groups to the same rule.
  10. Click Save.

Data consumers can now connect, using a temporary token instead of the repository user’s credentials — see Connect to a Repository through Impersonation for the connection steps.

To edit a policy:

  1. Click Policy in the navigation menu.
  2. Expand the policy to edit.
  3. Click Edit Policy.
  4. Update the policy as needed.
  5. Click Save.

To delete a policy:

  1. Click Policy in the navigation menu.
  2. Expand the policy to delete.
  3. Click Edit Policy.
  4. Click Delete Policy; a modal displays to confirm.
  5. Click Delete Policy.