Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  1. ABAC doesn't provide possibility to manage access to lists of resources
  2. It means that if there is a business rule that '/api/patients/{patient_id}/conditions/' should return only conditions that are referenced to episodes of the legal_entity. This rule will not be implemented on ABAC.

Architecture

Data model - TBD

Permission definition language - TBD