Could the Perm OU hierarchy be used to manage grouping permissions within an 
application?


----- Original Message -----
From: "Shawn McKinney" <[email protected]>
To: [email protected]
Sent: Sunday, October 9, 2016 11:17:06 AM
Subject: Re: Access Manager Role Filtering

> On Oct 9, 2016, at 9:20 AM, Chris Pike <[email protected]> wrote:
> 
> It's interesting that you bring up pushing Perm OU down to Perm Operation... 
> We had discussed doing this a while back to support separating delegation of 
> permissions. For example, separating read vs. write delegation on an object. 
> Why is this an invalid state?

To be clear I’m making a distinction between a push and a move.  A push is 
doable, as it means all children will have same ou as the parent.  A move is 
where I am having difficulty understanding how it would work.

Reply via email to