<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Why would I consider using Policy Templating? in Open Q&amp;A</title>
    <link>https://community.dynatrace.com/t5/Open-Q-A/Why-would-I-consider-using-Policy-Templating/m-p/268547#M35530</link>
    <description>&lt;P&gt;How does policy templating help in managing security boundaries within user groups?&lt;/P&gt;</description>
    <pubDate>Tue, 28 Jan 2025 09:14:30 GMT</pubDate>
    <dc:creator>GosiaMurawska</dc:creator>
    <dc:date>2025-01-28T09:14:30Z</dc:date>
    <item>
      <title>Why would I consider using Policy Templating?</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Why-would-I-consider-using-Policy-Templating/m-p/268547#M35530</link>
      <description>&lt;P&gt;How does policy templating help in managing security boundaries within user groups?&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jan 2025 09:14:30 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Why-would-I-consider-using-Policy-Templating/m-p/268547#M35530</guid>
      <dc:creator>GosiaMurawska</dc:creator>
      <dc:date>2025-01-28T09:14:30Z</dc:date>
    </item>
    <item>
      <title>Re: Why would I consider using Policy Templating?</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Why-would-I-consider-using-Policy-Templating/m-p/268548#M35531</link>
      <description>&lt;P&gt;&lt;A href="https://docs.dynatrace.com/docs/manage/identity-access-management/permission-management/manage-user-permissions-policies/advanced/iam-policy-templating" target="_blank"&gt;&lt;SPAN data-contrast="none"&gt;Policy templating&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN data-contrast="auto"&gt; allows for the creation of reusable policies that implement parameterized values in their WHERE condition. An example policy that uses these bind parameters could be the following&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559685&amp;quot;:720}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559685&amp;quot;:720}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;ALLOW storage:logs:read WHERE storage:dt.security_context = "${bindParam:team}";&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559685&amp;quot;:720}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559685&amp;quot;:720}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;The actual values of the bind parameter ‘team’ are set uniquely with each group-&amp;gt;policy binding.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559685&amp;quot;:720}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559685&amp;quot;:720}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;In conclusion, if your user groups also represent security boundaries, then one way to pass that information into the bound policies is through policy templating. Doing so also reduces the footprint of your IAM policies.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;335559685&amp;quot;:720}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jan 2025 09:15:33 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Why-would-I-consider-using-Policy-Templating/m-p/268548#M35531</guid>
      <dc:creator>Jon2</dc:creator>
      <dc:date>2025-01-28T09:15:33Z</dc:date>
    </item>
    <item>
      <title>Re: Why would I consider using Policy Templating?</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Why-would-I-consider-using-Policy-Templating/m-p/269011#M35583</link>
      <description>&lt;P&gt;The Dynatrace IAM policy templating guide explains how to create reusable, parameterized policies to simplify permission management. Instead of writing multiple policies for different contexts, you can define a single policy with a parameter reference. Parameters are assigned during policy binding via REST API. If parameters mismatch, a 400 error is returned. Updates are allowed only if the parameter set remains unchanged. Policies can also support lists as binding parameters.&amp;nbsp;&amp;nbsp;&lt;A href="https://docs.dynatrace.com/docs/manage/identity-access-management/permission-management/manage-user-permissions-policies/advanced/iam-policy-templating?_gl=1*1x9rpg*_gcl_aw*R0NMLjE3MzQ0MjkwNDQuQ2p3S0NBaUEzNFM3QmhBdEVpd0FDWnp2NGN6ajZPNG96NGNLdmVUMVFNT041LVp3M2ZUR18xUU0zTGNpR3VXaEF5WmotNUFFU042LWRCb0NsUzRRQXZEX0J3RQ..*_gcl_dc*R0NMLjE3MzQ0MjkwNDQuQ2p3S0NBaUEzNFM3QmhBdEVpd0FDWnp2NGN6ajZPNG96NGNLdmVUMVFNT041LVp3M2ZUR18xUU0zTGNpR3VXaEF5WmotNUFFU042LWRCb0NsUzRRQXZEX0J3RQ..*_gcl_au*MTYyOTc2MjU5OC4xNzM1ODE1MTk5*_ga*MTQxNDI3MjUwOC4xNzEwODUzMzY5*_ga_1MEMV02JXV*MTczODU2NDM5Ni4zMzUuMS4xNzM4NTY1ODQzLjAuMC4w" target="_blank"&gt;https://docs.dynatrace.com/docs/manage/identity-access-management/permission-management/manage-user-permissions-policies/advanced/iam-policy-templating?_gl=1*1x9rpg*_gcl_aw*R0NMLjE3MzQ0MjkwNDQuQ2p3S0NBaUEzNFM3QmhBdEVpd0FDWnp2NGN6ajZPNG96NGNLdmVUMVFNT041LVp3M2ZUR18xUU0zTGNpR3VXaEF5WmotNUFFU042LWRCb0NsUzRRQXZEX0J3RQ..*_gcl_dc*R0NMLjE3MzQ0MjkwNDQuQ2p3S0NBaUEzNFM3QmhBdEVpd0FDWnp2NGN6ajZPNG96NGNLdmVUMVFNT041LVp3M2ZUR18xUU0zTGNpR3VXaEF5WmotNUFFU042LWRCb0NsUzRRQXZEX0J3RQ..*_gcl_au*MTYyOTc2MjU5OC4xNzM1ODE1MTk5*_ga*MTQxNDI3MjUwOC4xNzEwODUzMzY5*_ga_1MEMV02JXV*MTczODU2NDM5Ni4zMzUuMS4xNzM4NTY1ODQzLjAuMC4w&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 03 Feb 2025 07:02:15 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Why-would-I-consider-using-Policy-Templating/m-p/269011#M35583</guid>
      <dc:creator>Abidyaseen</dc:creator>
      <dc:date>2025-02-03T07:02:15Z</dc:date>
    </item>
  </channel>
</rss>

