aboutsummaryrefslogtreecommitdiffstats
path: root/tests/functional/scenario_available/delegation.py
diff options
context:
space:
mode:
authorRHE <rebirthmonkey@gmail.com>2017-12-26 15:38:11 +0100
committerRHE <rebirthmonkey@gmail.com>2017-12-26 15:38:11 +0100
commit69910cdd22ec3b27f3e1f608b317f9683de1dcf6 (patch)
tree93b38d646d4f42df1eef564ec887dad46356fd46 /tests/functional/scenario_available/delegation.py
parent454e9c5f8664ea99ccea2417b6cc3ffb238cf834 (diff)
moon kubernetes review
Change-Id: I49a62f18ac6ecd06cdbc8e51b4e8ba00971ce6aa Signed-off-by: RHE <rebirthmonkey@gmail.com>
Diffstat (limited to 'tests/functional/scenario_available/delegation.py')
-rw-r--r--tests/functional/scenario_available/delegation.py40
1 files changed, 40 insertions, 0 deletions
diff --git a/tests/functional/scenario_available/delegation.py b/tests/functional/scenario_available/delegation.py
new file mode 100644
index 00000000..839e74ce
--- /dev/null
+++ b/tests/functional/scenario_available/delegation.py
@@ -0,0 +1,40 @@
+
+pdp_name = "pdp1"
+policy_name = "Delegation policy example"
+model_name = "Delegation"
+
+subjects = {"user0": "", }
+objects = {"user1": "", }
+actions = {"delegate": ""}
+
+subject_categories = {"subjectid": "", }
+object_categories = {"delegated": "", }
+action_categories = {"delegation-action": "", }
+
+subject_data = {"subjectid": {"user0": ""}}
+object_data = {"delegated": {"user1": ""}}
+action_data = {"delegation-action": {"delegate": ""}}
+
+subject_assignments = {"user0": {"subjectid": "user0"}}
+object_assignments = {"user1": {"delegated": "user1"}}
+action_assignments = {"delegate": {"delegation-action": "delegate"}}
+
+meta_rule = {
+ "session": {"id": "", "value": ("subjectid", "delegated", "delegation-action")},
+}
+
+rules = {
+ "session": (
+ {
+ "rule": ("user0", "user1", "delegate"),
+ "instructions": (
+ {
+ "update": {"request:subject": "user1"} # update the current user with "user1"
+ },
+ {"chain": {"security_pipeline": "rbac"}}
+ )
+ },
+ )
+}
+
+