neutron-fwaas/etc/neutron/policy.d/neutron-fwaas.json

36 lines
1.5 KiB
JSON

{
"shared_firewalls": "field:firewalls:shared=True",
"shared_firewall_policies": "field:firewall_policies:shared=True",
"public_firewall_groups": "field:firewall_groups:public=True",
"public_firewall_policies": "field:firewall_policies:public=True",
"public_firewall_rules": "field:firewall_rules:public=True",
"create_firewall": "",
"get_firewall": "rule:admin_or_owner",
"create_firewall:shared": "rule:admin_only",
"get_firewall:shared": "rule:admin_only",
"update_firewall": "rule:admin_or_owner",
"update_firewall:shared": "rule:admin_only",
"delete_firewall": "rule:admin_or_owner",
"create_firewall_policy": "",
"get_firewall_policy": "rule:admin_or_owner or rule:shared_firewall_policies or rule:public_firewall_policies",
"create_firewall_policy:shared": "rule:admin_or_owner",
"update_firewall_policy": "rule:admin_or_owner",
"delete_firewall_policy": "rule:admin_or_owner",
"create_firewall_rule": "",
"get_firewall_rule": "rule:admin_or_owner or rule:shared_firewall_rules or rule:public_firewall_rules",
"update_firewall_rule": "rule:admin_or_owner",
"delete_firewall_rule": "rule:admin_or_owner",
"create_firewall_group": "",
"get_firewall_group": "rule:admin_or_owner or rule:public_firewall_groups",
"create_firewall_group:public": "rule:admin_only",
"get_firewall_group:public": "rule:admin_only",
"update_firewall_group": "rule:admin_or_owner",
"update_firewall_group:public": "rule:admin_only",
"delete_firewall_group": "rule:admin_or_owner"
}