Policy engine for keystone
Bases: keystone.policy.core.Driver
Verifies that the action is valid on the target in this context.
Parameters: |
|
---|---|
Raises : | exception.Forbidden if verification fails. |
Actions should be colon separated for clarity. For example:
- identity:list_users