Slide 29
Slide 29 text
permit (
principal == PhotoApp::User::"alice",
action == PhotoApp::Action::"viewPhoto",
resource == PhotoApp::Photo::"photo01.jpg"
);
forbid (
principal == PhotoApp::User::"bob",
action == PhotoApp::Action::"viewPhoto",
resource == PhotoApp::Photo::"photo02.jpg"
);
基本となるポリシー
alice は photo01.jpg を閲覧できる