Previous Topic: Unsuccessful Authentication Attempts

Next Topic: Policy Processing for Authorized Users

Authorization Processing for Hierarchical Policies

Policies can contain rules that allow access to resources and may also include rules that trigger SiteMinder events. The possible authorization events include the following:

OnAccessAccept

This type of event occurs when a user is successfully authorized.

OnAccessReject

This type of event occurs when an authenticated user is denied access to a resource.

If a rule does not specify an authorization event, the rule either allows or denies access to the resource.