Rubén Pérez Vaz
06/04/2024, 9:37 PMdefinition user {}
definition org {
relation owner: user
relation member: user
}
definition service {
relation org: organization:*
relation instance: instance
relation granted: role_binding
permission create = granted->service_create + org->owner
}
definition instance {
}
I know that the wildcard org->owner
doesn't work, but, how can I permit create permission at service
if the user is an owner
of an organization?