User, Groups ...

User, Groups ...

IAM Concepts

  • User - an object describing a user (identity, mail, login)

  • Group - a set of users, sharing common characteristics like organizational units, geographical location, etc.

  • Permissions - an atomic authorization to perform an operation in Cavaliba, within an App, or on some Data Model

  • Role - a set of permissions and associated user or groups ; used for security / authorization

  • API Keys -

  • IdP - Identity Provider - SAML / OIDC external federated identity provider (Keycloak, OKTA, Azure Entra, …)