Joey
02/04/2022, 4:57 AMJoey
02/04/2022, 4:58 AMJoey
02/04/2022, 4:58 AMJoey
02/04/2022, 4:58 AMJoey
02/04/2022, 4:59 AMRushil
02/04/2022, 5:00 AMJoey
02/04/2022, 5:00 AMNick
02/04/2022, 1:57 PMdefinition group {
relation user: user
relation parent: group
permission member= user + parent
}
definition process {
relation parent: process
relation reader : user | group#member
relation organization: organization
relation writer: user | group#member
relation property : property
relation has_child : process
relation deny_reader: user | group#member
permission read = (reader + parent-> read + organization-> read) - deny_reader
permission write = writer + parent-> write + organization-> write
}
definition user {}
I'm trying to write the relationship process:1#reader@group:1#member through the GRPC endpoint
I however can't find the correct notation for the Subject/SubjectReference
I've tried
SubjectId: 1#member SubjectType:group
ObjectId: 1 objectType: process
relation: reader
This however gives an error "subject group:1#member is not allowed for the resource process:1"
What would be the correct subjectreference to create the relationship?Nick
02/04/2022, 2:02 PMJake
02/04/2022, 2:04 PMJake
02/04/2022, 2:05 PMmember
becomes the optional subject relation part of the subject referenceNick
02/04/2022, 2:05 PMNick
02/04/2022, 2:07 PMNick
02/04/2022, 2:07 PMNick
02/04/2022, 2:08 PMNick
02/04/2022, 2:08 PMJake
02/04/2022, 2:09 PMJake
02/04/2022, 2:09 PMNick
02/04/2022, 2:09 PMNick
02/04/2022, 2:09 PMNick
02/04/2022, 2:09 PMJake
02/04/2022, 2:09 PMNick
02/04/2022, 2:11 PMNick
02/04/2022, 2:11 PMJake
02/04/2022, 2:12 PMauthzed
github namespace, or we can take what you've done as a starting point, what do you think?Nick
02/04/2022, 2:13 PMNick
02/04/2022, 2:14 PMNick
02/04/2022, 2:14 PMNick
02/04/2022, 2:15 PMNick
02/04/2022, 2:16 PM