AT&T 2.0.19 Code drop, stage 3
[aaf/authz.git] / auth / auth-cass / src / main / cql / osaaf.cql
1 USE authz;
2
3 // Create 'org' root NS
4 INSERT INTO ns (name,description,parent,scope,type)
5   VALUES('org','Root Namespace','.',1,1);
6
7 INSERT INTO role(ns, name, perms, description)
8   VALUES('org','admin',{'org.access|*|*'},'Org Admins');
9
10 INSERT INTO role(ns, name, perms, description)
11   VALUES('org','owner',{'org.access|*|read,approve'},'Org Owners');
12
13 INSERT INTO perm(ns, type, instance, action, roles, description) 
14   VALUES ('org','access','*','read,approve',{'org.owner'},'Org Read Access');
15
16 INSERT INTO perm(ns, type, instance, action, roles, description) 
17   VALUES ('org','access','*','*',{'org.admin'},'Org Write Access');
18
19 // Create Root pass
20 INSERT INTO cred (id,ns,type,cred,expires)
21   VALUES ('initial@osaaf.org','org.osaaf',1,0x008c5926ca861023c1d2a36653fd88e2,'2099-12-31') using TTL 14400;
22
23 INSERT INTO user_role(user,role,expires,ns,rname)
24   VALUES ('initial@osaaf.org','org.admin','2099-12-31','org','admin') using TTL 14400;
25
26
27 // Create org.osaaf
28 INSERT INTO ns (name,description,parent,scope,type)
29   VALUES('org.osaaf','OSAAF Namespace','org',2,2);
30
31 INSERT INTO role(ns, name, perms,description)
32   VALUES('org.osaaf','admin',{'org.osaaf.access|*|*'},'OSAAF Admins');
33
34 INSERT INTO perm(ns, type, instance, action, roles,description) 
35   VALUES ('org.osaaf','access','*','*',{'org.osaaf.admin'},'OSAAF Write Access');
36
37 INSERT INTO role(ns, name, perms,description)
38   VALUES('org.osaaf','owner',{'org.osaaf.access|*|read,approve'},'OSAAF Owners');
39
40 INSERT INTO perm(ns, type, instance, action, roles,description) 
41   VALUES ('org.osaaf','access','*','read,appove',{'org.osaaf.owner'},'OSAAF Read Access');
42
43 // Create org.osaaf.aaf
44 INSERT INTO ns (name,description,parent,scope,type)
45   VALUES('org.osaaf.aaf','Application Authorization Framework','org.osaaf',3,3);
46
47 INSERT INTO role(ns, name, perms, description)
48   VALUES('org.osaaf.aaf','admin',{'org.osaaf.aaf.access|*|*'},'AAF Admins');
49
50 INSERT INTO perm(ns, type, instance, action, roles, description) 
51   VALUES ('org.osaaf.aaf','access','*','*',{'org.osaaf.aaf.admin'},'AAF Write Access');
52
53 INSERT INTO perm(ns, type, instance, action, roles, description) 
54   VALUES ('org.osaaf.aaf','access','*','read,approve',{'org.osaaf.aaf.owner'},'AAF Read Access');
55
56 INSERT INTO role(ns, name, perms, description)
57   VALUES('org.osaaf.aaf','owner',{'org.osaaf.aaf.access|*|read,approve'},'AAF Owners');
58
59 INSERT INTO user_role(user,role,expires,ns,rname)
60   VALUES ('initial@osaaf.org','org.osaaf.aaf.admin','2099-12-31','org.osaaf.aaf','admin') using TTL 14400;
61