auth_model.conf 418 B

123456789101112131415161718192021
  1. [request_definition]
  2. r = sub, dom, obj, act
  3. [policy_definition]
  4. p = sub, dom, obj, act, eft
  5. [role_definition]
  6. #角色
  7. g = _, _, _
  8. #菜单
  9. g2 = _, _, _
  10. #部门
  11. g3 = _, _, _
  12. #区域
  13. g4 = _, _, _
  14. [policy_effect]
  15. e = some(where (p.eft == allow))
  16. [matchers]
  17. m = g(r.sub, p.sub, r.dom) && g2(r.sub, r.dom, p.sub) && g3(r.sub, r.dom, p.sub) && g4(r.sub, r.dom, p.sub) && r.dom == p.dom && r.obj == p.obj && r.act == p.act