Skip to content

Commit edd1915

Browse files
Wilson-EmmanuelSteve Riesenberg
authored and
Steve Riesenberg
committed
Corrected errors on the ACLS document
Closes gh-12270
1 parent 582c9c6 commit edd1915

File tree

1 file changed

+5
-5
lines changed
  • docs/modules/ROOT/pages/servlet/authorization

1 file changed

+5
-5
lines changed

docs/modules/ROOT/pages/servlet/authorization/acls.adoc

+5-5
Original file line numberDiff line numberDiff line change
@@ -65,12 +65,12 @@ When used in the context of receiving a permission, an SID is generally called a
6565
The only columns are the ID and the Java class name.
6666
Thus, there is a single row for each unique Class for which we wish to store ACL permissions.
6767

68-
* Finally, `ACL_ENTRY` stores the individual permissions assigned to each recipient.
69-
Columns include a foreign key to the ACL_OBJECT_IDENTITY, the recipient (which is a foreign key to ACL_SID), whether we audit or not, and the integer bit mask that represents the actual permission being granted or denied.
70-
We have a single row for every domain object instance for which we store ACL permissions.
68+
* `ACL_OBJECT_IDENTITY` stores information for each unique domain object instance in the system.
69+
Columns include a primary key ID, a foreign key to the `ACL_CLASS` table, a unique identifier so we know which ACL_CLASS instance we're providing information for, the parent, a foreign key to the `ACL_SID` table to represent the owner of the domain object instance, and whether we allow ACL entries to inherit from any parent ACL.
70+
We have a single row for every domain object instance we're storing ACL permissions for.
7171

72-
* Finally, ACL_ENTRY stores the individual permissions assigned to each recipient.
73-
Columns include a foreign key to the ACL_OBJECT_IDENTITY, the recipient (i.e. a foreign key to ACL_SID), whether we'll be auditing or not, and the integer bit mask that represents the actual permission being granted or denied.
72+
* Finally, `ACL_ENTRY` stores the individual permissions assigned to each recipient.
73+
Columns include a foreign key to the `ACL_OBJECT_IDENTITY`, the recipient (i.e. a foreign key to ACL_SID), whether we'll be auditing or not, and the integer bit mask that represents the actual permission being granted or denied.
7474
We have a single row for every recipient that receives a permission to work with a domain object.
7575

7676

0 commit comments

Comments
 (0)