...
Create the required Azure AD security groups - Example: TC-SmallVesselRegistrar-[DEV/TEST/ACC/PROD]
Add your application users to the security groups
Register your application with the Microsoft Identity Platform [Create an app registration], and add the API permissions your application requires from WLM:
WorkItem.CreateUpdate.All - Allow the application to have create/update access to all work item data.
WorkItem.Read.All - Allow the application to have read-only access to all work item data.
Grant admin consent for your application’s API permissions (This can only be done by the cloud admin team)
Register your line of business in the List of value service, contact the MOLE team. [NCD/NCA/NCT/PCP]
Contacts: Walter Hoban , Xia W , yiliu
List of value type: LineOfBusiness
You can use the following query to get information on the structure of the JSON Object:
Code Block language sql SELECT * FROM c WHERE c.ListOfValueType like '%LineOfBusiness%'
Submit a request to Team Kraken [TC.F NCR MAACE Team Kraken / Équipe Kraken CEMAA RCN F.TC NCRMAACETeamKraken-EquipeKrakenCEMAARCN@tc.gc.ca] to integrate with WLM
Provide the security group names and what type of operation each group requires (App Role):
Readers
Writers
Provide the application name (App Registration Name)
Which environment you want to integrate your app with [NCD/NCA/NCT/PCP]
CRSM/MTOA and Status codes
In order to comply with the Service Fees Act, your application might need to report the service standards. WLM is integrated with MTOA/CRSM and is configured to automatically send notifications. Your only part here is to verify/register your status codes. Reach out to the MOLE team, Xia W , Walter Hoban , yiliu for more information.
Info |
---|
There will be some upcoming changes to Workload Management Service in the near future to unify the status codes. A notification will be sent out, once that is finalized. |
Application Configuration [Authentication/Authorization]
Workload Management Service uses the Microsoft Identity Platform to secure it’s endpoints. If you followed the previous steps sequentially you should have your application registered with the MIP and the only remaining step is to configure your application to pass the JWT Bearer token as part of any communication with any of the WLM endpoints.
...