Bridge Tag Management
As part of the common services, Kyndryl Bridge offers a robust centralized Bridge Tag Management service that simplifies the work of tag administrators. They can add standard tags consumed by various applications integrated with Kyndryl Bridge, all from a single, convenient source. Enterprises can leverage this to ensure consistent data tagging, thereby enhancing the accuracy and reliability of their analytics.
The Bridge Tag Management service handles the tags at two different levels:
- Account-level tags: Account-level tags are created and managed from the Tag Definitions and Tag Repository pages.
- Global-level tags: Global tags are created and managed from the Global Tags page.
Prerequisites
Make sure you have one of the following roles to create and manage tag keys and their values on the Tag Definitions and Tag Repository pages:
- Tag Administrator: Enables users to manage the lifecycle of tag-key-value pairs.
- Platform Administrator: Administrative rights across the platform.
Follow the steps below to add platform roles directly to a user:
- Navigate to the Understanding Bridge Access Management page.
- From the left navigation panel, locate Users Management.
- Locate the Assigning access policies directly to a user section and complete steps 1, 2, and 3.
- Complete the information as in step 4 of Assigning an access policy directly for a user
- Services: Platform
- Scope: All Resources
- Roles: Select Tag Administrator or Tag Viewer, based on access requirements
- Select Assign.
Tag management navigation
Tags are managed externally to the Inventory service and are instead handled as an administrative service. To access the Tag Management service, click the hamburger icon and select Tag Management. From the pop-up menu, select Manage & Administer and then select Tag Management service.
The left navigation bar contains two icons representing the two Tag Management pages:
- Tag Definitions: Enables the creation of tag definitions in accordance with the procedures found in Tag definitions.
- Tag Repository: Enables adding and deleting tags. Refer to Tag repository for details.
Glossary
- Tag definitions: Tag definitions provide an automated governance and validation mechanism for tags. The Tag Definitions page enables administrators to create and manage consistent, predefined tag keys and constraints for tag values, thereby streamlining tag key management and eliminating duplicates. All tags created through tag definitions are validated and available in the tag repository. This page enables you to create, view, use as templates and delete tag definitions, thereby enhancing efficiency in tag management and increasing productivity.
- Tag repository: The tag repository provides efficient storage and management of tags for Kyndryl Bridge apps and services, ensuring consistent tagging across all applications. It centralizes access to both governed and ungoverned tags, allowing tag administrators to maintain an organized and up-to-date repository. Additionally, it shows which apps/services use specific tags and can flag undefined tags or those with non-compliant values.
- Account level Tags: Tags that are added by users (Customers, admins, or Kyndryl admins) in the scope of an account. These tags can be used on assets within the account.
- Global/Kyndryl Owned Tags: Tags that can be used across accounts. Global tags are predefined & managed centrally from the global control plane. Can be used by multiple Organizational Unit (OU) IDs/Accounts.
- Governed Tag: All tags that have a tag definition, i.e., validated tags.
- Un-Goverened tag: All tags that do not have a tag definition, i.e., Unvalidated tags. Each service can decide whether to apply unvalidated tags to its assets.
- Tag Insights:
- Tag usage: Displays the name of the App(s)/services using the tag. Displays unused tags.
- Flag tags Missing definition: Flag tag values that are not aligned with the defined tag value constraints.
Administrative control
An Administrative Control capability (API Only) at the account level allows administrators to decide whether to enable the direct addition of tags to the tag repository. By default, tags are added through a tag definition process to maintain standardization and control. However, administrators can choose to allow or block the creation of tags (key/value pairs) directly in the tag repository based on their account's specific needs.
When enabled, users with the tag administrator role can:
- Create a new tag Key/Value pair from the tag repository page and save it.
- Import tags.
When disabled, users with the tag administrator role:
- Cannot add/create tags directly into the tag repository.
- Cannot import tags.
Set admin control using API
This call allows you to configure and review the administrative settings.
Updates the administrative control.
Parameter: Set to true or false [string] enable
Fetches the admin settings for tag management.
Response