R80.x Security Management makes team work easier by allowing to configure granular permission profiles, delegate ownership of different Layers to different administrators and more.
Sometimes, we might want to create "per object" permission, such profile can be very useful when we want to outsource parts of the policy or limit admins in team to specific object types.
This SmartTask allows us to further extend the permission profiles by running a custom script (Pre Publish)that ensures that the administrators included in Custom Data "admins" field only modify objects that hold the tag specified in the "allowed tag" field.
You can download the attached SmartTask in txt format and import it to your Security Management Server. Right after import, you'll find the SmartTask itself in Manage and Settings > SmartTasks, the script it uses resides in Scripts Repository (Gateways & Servers > Scripts).