summaryrefslogtreecommitdiff
path: root/doc/share/authz/POLICY.md
diff options
context:
space:
mode:
authormo khan <mo@mokhan.ca>2025-03-17 14:45:41 -0600
committermo khan <mo@mokhan.ca>2025-03-17 14:45:41 -0600
commit94d084a51172b7e3851779e9e052435084d4abfe (patch)
tree2af690135fe184c34dedec7f34447fb12092ed40 /doc/share/authz/POLICY.md
parentf9168083b787118af5577015a3c7f9efa63c8e80 (diff)
docs: add notes on ABAC and weakness of RBAC
Diffstat (limited to 'doc/share/authz/POLICY.md')
-rw-r--r--doc/share/authz/POLICY.md6
1 files changed, 6 insertions, 0 deletions
diff --git a/doc/share/authz/POLICY.md b/doc/share/authz/POLICY.md
index 39a1128..207c1cc 100644
--- a/doc/share/authz/POLICY.md
+++ b/doc/share/authz/POLICY.md
@@ -27,6 +27,12 @@ A policy language facilitates:
1. the specification of composite policies, which in turn forms the basis of trust delegation.
1. **the static analysis of policies and system configuration.**
+## Security Context/Scope
+
+1. Single resource
+1. Nested resources
+1. Individual Attributes on a resource
+
## Example
The following hierarchy will be used as the basis for expression policy.