The following table describes permitted editing methods of OneLogin schema types and names restrictions required by system object processing.
| Type | Read | Add | Delete | Refresh | 
|---|---|---|---|---|
| 
 Service provider (APIAuthorization)  | 
 Yes  | 
 No  | 
 No  | 
 No  | 
| 
 Applications (Application)  | 
 Yes  | 
 No  | 
 No  | 
 No  | 
| 
 Authentication methods (AuthFactor)  | 
 Yes  | 
 No  | 
 No  | 
 No  | 
| 
 Clients (Client)  | 
 Yes  | 
 No  | 
 No  | 
 No  | 
| 
 Custom user fields (CustomAttribute)  | 
 Yes  | 
 No  | 
 No  | 
 No  | 
| 
 Change history (Event)  | 
 Yes  | 
 No  | 
 No  | 
 No  | 
| 
 Groups (Group)  | 
 Yes  | 
 No  | 
 No  | 
 No  | 
| 
 Policies (Policy)  | 
 Yes  | 
 No  | 
 No  | 
 No  | 
| 
 Privileges (Privilege)  | 
 Yes  | 
 No  | 
 No  | 
 No  | 
| 
 Roles (Role)  | 
 Yes  | 
 No  | 
 No  | 
 No  | 
| 
 Administrators for roles (RoleAdmin)  | 
 Yes  | 
 Yes  | 
 Yes  | 
 Yes  | 
| 
 Role assignments to applications (RoleAppliocation)  | 
 Yes  | 
 Yes  | 
 Yes  | 
 Yes  | 
| 
 Scopes (Scope)  | 
 Yes  | 
 No  | 
 No  | 
 No  | 
| 
 User accounts (User)  | 
 Yes  | 
 Yes  | 
 Yes  | 
 Yes  | 
| 
 Application assignments to user accounts (UserApplication)  | 
 Yes  | 
 No  | 
 No  | 
 No  | 
| 
 Authentication method assignments to user accounts(UserAuthFactor)  | 
 Yes  | 
 Yes  | 
 Yes  | 
 Yes  | 
| 
 Custom field assignments to user accounts (UserCustomAttribute)  | 
 Yes  | 
 No  | 
 No  | 
 Yes  | 
| 
 Privilege assignments to user accounts (UserPrivilege)  | 
 Yes  | 
 Yes  | 
 Yes  | 
 Yes  |