summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--etc/authzd/policy0.cedar23
1 files changed, 12 insertions, 11 deletions
diff --git a/etc/authzd/policy0.cedar b/etc/authzd/policy0.cedar
index e01182c5..034e81b5 100644
--- a/etc/authzd/policy0.cedar
+++ b/etc/authzd/policy0.cedar
@@ -1,19 +1,20 @@
permit(principal, action == Action::"check", resource)
when {
- context has bearer_token &&
+ context has bearer_token &&
context.bearer_token == "valid-token"
};
permit(principal, action == Action::"check", resource)
when {
- context has path &&
- (context.path like "*.css" ||
- context.path like "*.js" ||
- context.path like "*.ico" ||
- context.path like "*.png" ||
- context.path like "*.jpg" ||
- context.path like "*.jpeg" ||
- context.path like "*.gif" ||
- context.path like "*.bmp" ||
- context.path like "*.html")
+ context has path && (
+ context.path like "*.css" ||
+ context.path like "*.js" ||
+ context.path like "*.ico" ||
+ context.path like "*.png" ||
+ context.path like "*.jpg" ||
+ context.path like "*.jpeg" ||
+ context.path like "*.gif" ||
+ context.path like "*.bmp" ||
+ context.path like "*.html"
+ )
};