Event Access Policy

Event Access Policy

Introduction

Setup event access policies per event to allow only users with certain profile information to participate in an event. If the user does not have the settings applied in his/her profile, the user will be redirected to his/her profile settings.

Pre-Condition

A user must be allowed to access the tenant. This will be defined by the https://hacking-lab.atlassian.net/l/cp/NcGdyQPs

Scope

Such event access policies can be applied to any event in HL.

In the screenshot above, the user cannot access the event due to the access policy.

By hovering over the ACCESS DENIED link, a message will be shown

The user must be men in the example above.

Rules

  • Event Access Policy rules can be added as AND or OR statement (like e-mail filtering rules)

Examples

  • access only possible if user has a certain age (between 14 and 25 years old)

  • access only possible if user comes from a certain nation (Switzerland, Germany, Spain, …)

  • access only possible if user has set the Firstname/Lastname in the profile (because it was optional in the Tenant Policy)

  • access only possible if user has added his Banking details (BugBounty requirement)

  • access only possible if user has added his/her mobile number (trust)

  • access only possible if users e-mail contains a certain @domain [List of domains]

  • access only possible if user has a certain gender set (male, female, divers)

  • team size between min and max