<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 📚 Introducing the new IAM in Open Q&amp;A</title>
    <link>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269783#M35694</link>
    <description>&lt;P&gt;Can we enabled Personal Access tokens to Specific Groups only? Or Specific Users?&lt;/P&gt;</description>
    <pubDate>Tue, 11 Feb 2025 16:25:13 GMT</pubDate>
    <dc:creator>VenkataSainath</dc:creator>
    <dc:date>2025-02-11T16:25:13Z</dc:date>
    <item>
      <title>📚 Introducing the new IAM</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269581#M35672</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="Forum banner horizontal (1).png" style="width: 999px;"&gt;&lt;img src="https://community.dynatrace.com/t5/image/serverpage/image-id/26280i858593B4203DDA38/image-size/large?v=v2&amp;amp;px=999" role="button" title="Forum banner horizontal (1).png" alt="Forum banner horizontal (1).png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hello, Community!&lt;BR /&gt;&lt;BR /&gt;Here it is, another chapter in our series of knowledge resources for the newly launched Dynatrace Apps and Frameworks. Today, we're thrilled to introduce our&amp;nbsp;&lt;STRONG&gt;Identity and Access Management (IAM) FAQ&lt;/STRONG&gt;! &lt;span class="lia-unicode-emoji" title=":party_popper:"&gt;🎉&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;If you missed our previous articles, make sure to catch up on&amp;nbsp;&lt;A href="https://community.dynatrace.com/t5/Alerting/Introducing-the-new-Anomaly-Detection-App/td-p/253956" target="_blank"&gt;Anomaly Detection&lt;/A&gt;,&amp;nbsp;&lt;A href="https://community.dynatrace.com/t5/Automations/Automations-helpful-resources/m-p/218540?_gl=1*14xylsk*_gcl_au*MTI5OTQ2ODYxMi4xNzI3NzkwNjg5*_ga*NTEwOTIzNjY2LjE3MTk5ODk5MTY.*_ga_1MEMV02JXV*MTczNDYxNTc2Mi4yOC4xLjE3MzQ2MTg2MzYuMC4wLjA.#M72" target="_blank"&gt;Automations&lt;/A&gt;,&amp;nbsp;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-Distributed-Tracing-app/td-p/262273" target="_blank"&gt;Business Analytics&lt;/A&gt;,&amp;nbsp;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-Clouds-App/td-p/248321" target="_blank"&gt;Clouds&lt;/A&gt;,&amp;nbsp;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-Databases-App-helpful-resources/td-p/243436" target="_blank"&gt;Databases&lt;/A&gt;,&amp;nbsp;&lt;A href="https://community.dynatrace.com/t5/Real-User-Monitoring/Unlock-the-full-potential-of-Digital-Experience-Monitoring-with/td-p/248747" target="_blank"&gt;DEM&lt;/A&gt;,&amp;nbsp;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-Discovery-amp-Coverage-App/td-p/251950" target="_blank"&gt;Discovery and Coverage&lt;/A&gt;,&amp;nbsp;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-Distributed-Tracing-app/td-p/262273" target="_blank"&gt;Distributed Tracing&lt;/A&gt;,&amp;nbsp;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-Infrastructure-and-Operations-App/m-p/246180#M32416" target="_blank"&gt;Infrastructure and Operations&lt;/A&gt;,&amp;nbsp;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-OpenPipeline/td-p/262192" target="_blank"&gt;OpenPipeline&lt;/A&gt;,&amp;nbsp;&lt;A href="https://community.dynatrace.com/t5/Alerting/Introducing-the-new-Problems-App/td-p/260166" target="_blank"&gt;Problems&lt;/A&gt;, &lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-Services-App/td-p/261060" target="_blank"&gt;Services&lt;/A&gt;, and &lt;A href="https://community.dynatrace.com/t5/Synthetic-Monitoring/Introducing-the-new-NAM/m-p/267342#M2943" target="_blank"&gt;NAM&lt;/A&gt;&amp;nbsp;FAQ articles.&lt;BR /&gt;&lt;BR /&gt;Dynatrace’s IAM framework enables administrators to manage user identities and access permissions to platform resources and data. It includes user onboarding, automatic provisioning, and self-service features, as well as tools for configuring and monitoring user authorization.&lt;BR /&gt;&lt;BR /&gt;Together with Jon Ujkani&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/73677"&gt;@Jon2&lt;/a&gt;, Principal Product Manager, and Florian Aigner&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/4189"&gt;@florian_AIgner&lt;/a&gt;, Senior Product Manager, we've created a comprehensive knowledge base to help you get the most out of IAM.&lt;BR /&gt;&lt;BR /&gt;If you want to stay updated on all our FAQ articles for new applications, follow the "&lt;A href="https://community.dynatrace.com/t5/forums/filteredbylabelpage/board-id/DynatraceQandA/label-name/faq" target="_blank"&gt;faq&lt;/A&gt;" label. Now, to the links below!&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;Users &amp;amp; Groups:&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/What-are-the-different-ways-to-invite-users-into-your-Dynatrace/td-p/267388" target="_blank"&gt;What are the different ways to invite users into your Dynatrace?&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Why-do-I-need-to-assign-users-to-groups/td-p/267497" target="_blank"&gt;Why do I need to assign users to groups?&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Are-there-any-pre-built-groups/td-p/268015" target="_blank"&gt;Are there any pre-built groups?&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Do-I-need-to-manually-create-my-own-groups/td-p/267614" target="_blank"&gt;Do I need to manually create my own groups?&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Why-would-I-use-a-service-user/td-p/268128" target="_blank"&gt;Why would I use a service user?&lt;/A&gt; &lt;BR /&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Platform Access:&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/What-is-the-easiest-way-to-grant-my-users-access-to-Dynatrace/td-p/267756" target="_blank"&gt;What is the easiest way to grant my users access to Dynatrace?&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Is-there-an-easy-way-to-get-up-and-running-with-IAM-policies/td-p/267880" target="_blank"&gt;Is there an easy way to get up and running with IAM policies?&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/I-m-using-default-policies-but-I-d-like-to-restrict-permissions/td-p/268199" target="_blank"&gt;I’m using default policies, but I’d like to restrict permissions further. How do I do that?&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/Why-would-I-consider-using-Policy-Templating/td-p/268547" target="_blank"&gt;Why would I consider using Policy Templating?&lt;/A&gt; &amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/View-Logs-role-seems-to-be-bypassing-conditional-access-for/td-p/268458" target="_blank"&gt;‘View Logs’ role seems to be bypassing conditional access for Grail storage. Is this true?&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;External Identity Provider / 3rd Party IdP Configuration:&lt;/STRONG&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/What-is-SAML-federation-and-how-do-I-configure-it/td-p/268753" target="_blank"&gt;What is SAML federation and how do I configure it?&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/How-do-I-set-up-user-and-group-provisioning-using-SCIM/td-p/269035" target="_blank"&gt;How do I set up user and group provisioning using SCIM?&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;API Access:&lt;/STRONG&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/There-are-so-many-tokens-Which-one-do-I-use-for-what/td-p/269210" target="_blank"&gt;So many tokens. Which one do I use for what?&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/How-do-I-generate-and-use-OAuth-clients/td-p/269278" target="_blank"&gt;How do I generate and use OAuth clients?&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/What-are-platform-tokens/td-p/269375" target="_blank"&gt;What are platform tokens and how do I use them?&lt;/A&gt; &amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.dynatrace.com/t5/Open-Q-A/How-can-I-create-and-manage-service-users/td-p/269569" target="_blank"&gt;How can I create and manage service users?&lt;/A&gt; &amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 10 Feb 2025 08:43:10 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269581#M35672</guid>
      <dc:creator>GosiaMurawska</dc:creator>
      <dc:date>2025-02-10T08:43:10Z</dc:date>
    </item>
    <item>
      <title>Re: 📚 Introducing the new IAM</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269758#M35687</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/77704"&gt;@GosiaMurawska&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;Using Dynatrace's New ABAC based access management is &lt;STRONG&gt;really very good in terms of scalability and fine grained access control.&lt;/STRONG&gt;&lt;BR /&gt;But still there are some issues that I face like, I was assigning a boundary for &lt;STRONG&gt;Infrastructure &amp;amp; Operations App &lt;/STRONG&gt;for accessing metrics &lt;STRONG&gt;"ALLOW storage:metrics:read"&lt;/STRONG&gt; but the boundary is not working, I mean the metrics are not shown.&lt;BR /&gt;But If I am not assigning any &lt;STRONG&gt;boundary &lt;/STRONG&gt;then I am able to see metrics.&lt;BR /&gt;Docs Link :&amp;nbsp;&lt;A title="https://docs.dynatrace.com/docs/shortlink/iam-policystatements#storage-metrics-read" href="https://docs.dynatrace.com/docs/shortlink/iam-policystatements#storage-metrics-read" target="_self"&gt;https://docs.dynatrace.com/docs/shortlink/iam-policystatements#storage-metrics-read&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2025 13:16:49 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269758#M35687</guid>
      <dc:creator>zaid-bashir</dc:creator>
      <dc:date>2025-02-11T13:16:49Z</dc:date>
    </item>
    <item>
      <title>Re: 📚 Introducing the new IAM</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269761#M35689</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/79156"&gt;@zaid-bashir&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Would you kindly share the boundary statement you have?&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2025 13:33:38 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269761#M35689</guid>
      <dc:creator>Jon2</dc:creator>
      <dc:date>2025-02-11T13:33:38Z</dc:date>
    </item>
    <item>
      <title>Re: 📚 Introducing the new IAM</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269767#M35691</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/73677"&gt;@Jon2&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;Boundary statement that i used is as :&amp;nbsp;&lt;SPAN&gt;storage:host.name = "My-Selected-Host-Name"&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2025 13:51:47 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269767#M35691</guid>
      <dc:creator>zaid-bashir</dc:creator>
      <dc:date>2025-02-11T13:51:47Z</dc:date>
    </item>
    <item>
      <title>Re: 📚 Introducing the new IAM</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269780#M35693</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/79156"&gt;@zaid-bashir&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;I tried the following:&lt;BR /&gt;&lt;BR /&gt;- 1 user assigned to one group&lt;BR /&gt;- Group bound to default policies: Standard User, Read Metrics and Read Entities&lt;BR /&gt;- Use can run a timeseries DQL and get back all host entities (5 in my case)&lt;BR /&gt;- Then applied a boundary to the 'Read Metrics' permission. Boundary statement: 'storage:host.name = "pi5";'&amp;nbsp;&lt;BR /&gt;- With the boundary applied same query only returns host named 'pi5'&lt;BR /&gt;&lt;BR /&gt;Is that what you are trying to achieve or did I miss the point?&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2025 16:11:24 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269780#M35693</guid>
      <dc:creator>Jon2</dc:creator>
      <dc:date>2025-02-11T16:11:24Z</dc:date>
    </item>
    <item>
      <title>Re: 📚 Introducing the new IAM</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269783#M35694</link>
      <description>&lt;P&gt;Can we enabled Personal Access tokens to Specific Groups only? Or Specific Users?&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2025 16:25:13 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269783#M35694</guid>
      <dc:creator>VenkataSainath</dc:creator>
      <dc:date>2025-02-11T16:25:13Z</dc:date>
    </item>
    <item>
      <title>Re: 📚 Introducing the new IAM</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269814#M35700</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/73677"&gt;@Jon2&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;Thanku for the input, but can you check whether the metrics of the same host are visible on &lt;STRONG&gt;Infrastructure &amp;amp; Operations App&lt;/STRONG&gt;.&lt;/P&gt;</description>
      <pubDate>Wed, 12 Feb 2025 05:23:30 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/269814#M35700</guid>
      <dc:creator>zaid-bashir</dc:creator>
      <dc:date>2025-02-12T05:23:30Z</dc:date>
    </item>
    <item>
      <title>Re: 📚 Introducing the new IAM</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/270031#M35718</link>
      <description>&lt;P&gt;HI&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/79156"&gt;@zaid-bashir&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;on my setup it works. Could you load some screenshots with your example use case?&lt;BR /&gt;&lt;BR /&gt;Thank you in advance.&lt;img class="lia-deferred-image lia-image-emoji" src="https://community.dynatrace.com/html/@55ADF9751E5074BD186CC50E36EA76F5/images/emoticons/thankyou.gif" alt=":thankyou:" title=":thankyou:" /&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 14:49:56 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Introducing-the-new-IAM/m-p/270031#M35718</guid>
      <dc:creator>Jon2</dc:creator>
      <dc:date>2025-02-13T14:49:56Z</dc:date>
    </item>
  </channel>
</rss>

