summaryrefslogtreecommitdiffstats
path: root/keystone-moon/examples/moon/policies/policy_authz/rule.json
blob: 73e791d717b94e23c7a2a70a65e8f8f7392f1d4b (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
{
	"mls_rule":[
		["high", "vm_admin", "medium"],
		["high", "vm_admin", "low"],
		["medium", "vm_admin", "low"],
		["high", "vm_access", "high"],
		["high", "vm_access", "medium"],
		["high", "vm_access", "low"],
		["medium", "vm_access", "medium"],
		["medium", "vm_access", "low"],
		["low", "vm_access", "low"]
	],
	"dte_rule":[
		["ft", "read", "computing"],
		["ft", "write", "computing"],
		["ft", "read", "storage"],
		["ft", "write", "storage"],
		["xx", "read", "storage"]
	],
	"rbac_rule":[
		["dev", "xx", "read", "servers"],
		["dev", "xx", "read", "vm1"],
		["dev", "xx", "read", "vm2"],
		["dev", "xx", "read", "file1"],
		["dev", "xx", "read", "file2"],
		["dev", "xx", "write", "vm1"],
		["dev", "xx", "write", "vm2"],
		["dev", "xx", "write", "file1"],
		["dev", "xx", "write", "file2"],
		["admin", "xx", "read", "servers"],
		["admin", "ft", "read", "servers"],
		["admin", "ft", "read", "vm1"],
		["admin", "ft", "read", "vm2"],
		["admin", "ft", "read", "file1"],
		["admin", "ft", "read", "file2"],
		["admin", "ft", "write", "vm1"],
		["admin", "ft", "write", "vm2"],
		["admin", "ft", "write", "file1"],
		["admin", "ft", "write", "file2"]
	]
}