You are here:
Authorizing Access to Order Management Resources
You can manage access to a resource for a specific user. For example, you can hide the Scope field on an Orchestration Plan Definition object type for a user profile. The Scope field is then be hidden on all Orchestration Plan Definition objects for that user profile.
Field level security covers parameters at the Object level. For example, security settings are managed on individual attributes for Object Type. Permissions are calculated for Objects when a user accesses Order Management Plus.
With the authorization feature, you can:
Set permissions for objects and object types for a user profile.
Set permissions for attributes for a user profile.
Set wildcard permissions for a resource for a user profile.
The UI service provides a REST API and user interface to manage Object Type and Attribute permissions.
The Order Management Plus metadata export-import tool enables you to import or export permissions for objects, object types and attributes in the form of yaml files to and from the database.
The following figure shows the type of permissions supported:
- Set Object Security in Order Management Plus
You can set object security in the Users and Profiles section of the Vlocity OM Plus Administration panel. - Set Attribute Security in Order Management Plus
You can set attribute security in the Users and Profiles section of the Vlocity OM Plus Administration panel.


