Access Control Service evaluates authorization decisions for every API request. It supports RBAC (role-based), ABAC (attribute-based), and tenant-scoped resource policies. Policy changes are applied in real-time without requiring session invalidation.

Relationships

Composes outgoing 2
Target Element Element Type
Platform Core Software System
Access Control API API Endpoint
Part of incoming 1
Source Element Element Type
Access Control API API Endpoint

Architecture Context

Properties

Type Software Subsystem
Layer Application
Domain Customer Management
Status active
Owner Platform Team

Additional Metadata

Environments production, staging
Archimate Type application-component

Meta Model

Business
Organization
Application current
Technology

Actions