authz/examples/rbac_model_with_resource_roles.conf
2017-04-16 15:30:22 +08:00

15 lines
235 B
Plaintext

[request_definition]
r = sub, obj, act
[policy_definition]
p = sub, obj, act
[role_definition]
g = _, _
g2 = _, _
[policy_effect]
e = some(where (p.eft == allow))
[matchers]
m = g(r.sub, p.sub) && g2(r.obj, p.obj) && r.act == p.act