@@ -366,104 +366,104 @@ module ActivityVerb
366366
367367 # Permissions, all permissions that may be granted to an account.
368368 module Permission
369- GROUP_READ = "group:read"
370- GROUP_WRITE = "group:write"
371- GROUP_ROLE_READ = "grouprole:read"
372- GROUP_ROLE_WRITE = "grouprole:write"
369+ ACCESS_REQUEST_LIST = "accessrequest:list"
370+ ACCESS_REQUEST_REQUESTER = "accessrequest:requester"
373371 ACCOUNT_GROUP_READ = "accountgroup:read"
374372 ACCOUNT_GROUP_WRITE = "accountgroup:write"
375- RELAY_LIST = "relay:list"
376- RELAY_CREATE = "relay:create"
377- DATASOURCE_LIST = "datasource:list"
373+ APPROVAL_FLOW_EDIT = "approvalflow:edit"
374+ APPROVAL_FLOW_LIST = "approvalflow:list"
375+ BILLING_READ = "billing:read"
376+ CREDENTIAL_READ = "credential:read"
377+ CREDENTIAL_WRITE = "credential:write"
378378 DATASOURCE_CREATE = "datasource:create"
379- DATASOURCE_HEALTHCHECK = "datasource:healthcheck"
380- DEPRECATED_DATASOURCE_GRANT = "datasource:grant"
381379 DATASOURCE_DELETE = "datasource:delete"
380+ DATASOURCE_HEALTHCHECK = "datasource:healthcheck"
381+ DATASOURCE_LIST = "datasource:list"
382382 DATASOURCE_UPDATE = "datasource:update"
383+ DEPRECATED_DATASOURCE_GRANT = "datasource:grant"
384+ DISCOVERY_CONNECTOR_READ = "discoveryconnector:read"
385+ DISCOVERY_CONNECTOR_WRITE = "discoveryconnector:write"
386+ GRANT_READ = "grant:read"
387+ GRANT_WRITE = "grant:write"
388+ GROUP_READ = "group:read"
389+ GROUP_ROLE_READ = "grouprole:read"
390+ GROUP_ROLE_WRITE = "grouprole:write"
391+ GROUP_WRITE = "group:write"
392+ INSTALLATION_BLESS = "installation:bless"
393+ INSTALLATION_CREATE = "installation:create"
394+ INSTALLATION_REVOKE = "installation:revoke"
395+ MANAGED_SECRET_CREATE = "managedsecret:create"
396+ MANAGED_SECRET_DELETE = "managedsecret:delete"
397+ MANAGED_SECRET_LIST = "managedsecret:list"
398+ MANAGED_SECRET_READ = "managedsecret:read"
399+ MANAGED_SECRET_UPDATE = "managedsecret:update"
400+ ORG_AUDIT_ACCESS_REQUESTS = "audit:accessrequests"
401+ ORG_AUDIT_ACCOUNT_GRANTS = "audit:accountgrants"
402+ ORG_AUDIT_ACTIVITIES = "audit:activities"
403+ ORG_AUDIT_APPROVAL_FLOWS = "audit:approvalflows"
404+ ORG_AUDIT_DATASOURCES = "audit:datasources"
405+ ORG_AUDIT_GROUPS = "audit:groups"
406+ ORG_AUDIT_NODES = "audit:nodes"
407+ ORG_AUDIT_ORG = "audit:organization"
408+ ORG_AUDIT_PERMISSIONS = "audit:permissions"
409+ ORG_AUDIT_POLICIES = "audit:policies"
410+ ORG_AUDIT_QUERIES = "audit:queries"
411+ ORG_AUDIT_REMOTE_IDENTITIES = "audit:remoteidentities"
412+ ORG_AUDIT_REMOTE_IDENTITY_GROUPS = "audit:remoteidentitygroups"
413+ ORG_AUDIT_ROLES = "audit:roles"
414+ ORG_AUDIT_SSH = "audit:ssh"
415+ ORG_AUDIT_SECRET_ENGINES = "audit:secretengines"
416+ ORG_AUDIT_SECRET_STORES = "audit:secretstores"
417+ ORG_AUDIT_USERS = "audit:users"
418+ ORG_AUDIT_WORKFLOWS = "audit:workflows"
419+ ORG_CREATE_CHILD_ORGANIZATION = "organization:create_child_organization"
420+ ORG_DEPLOYMENT_DOCTOR = "organization:deployment_doctor"
421+ ORG_EDIT_SETTINGS = "organization:edit_settings"
422+ ORG_LIST_CHILDREN = "organization:list_children"
423+ ORG_VIEW_SETTINGS = "organization:view_settings"
424+ POLICY_READ = "policy:read"
425+ POLICY_WRITE = "policy:write"
426+ RELAY_CREATE = "relay:create"
427+ RELAY_LIST = "relay:list"
428+ REMOTE_IDENTITY_GROUP_READ = "remoteidentitygroup:read"
429+ REMOTE_IDENTITY_GROUP_WRITE = "remoteidentitygroup:write"
430+ REMOTE_IDENTITY_READ = "remoteidentity:read"
431+ REMOTE_IDENTITY_WRITE = "remoteidentity:write"
432+ REPORT_READ = "report:read"
383433 RESOURCE_LOCK_DELETE = "resourcelock:delete"
384434 RESOURCE_LOCK_LIST = "resourcelock:list"
435+ ROLE_CREATE = "role:create"
436+ ROLE_DELETE = "role:delete"
437+ ROLE_LIST = "role:list"
438+ ROLE_UPDATE = "role:update"
385439 SECRET_ENGINE_CREATE = "secretengine:create"
386- SECRET_ENGINE_LIST = "secretengine:list"
387440 SECRET_ENGINE_DELETE = "secretengine:delete"
388- SECRET_ENGINE_UPDATE = "secretengine:update "
441+ SECRET_ENGINE_LIST = "secretengine:list "
389442 SECRET_ENGINE_STATUS = "secretengine:status"
443+ SECRET_ENGINE_UPDATE = "secretengine:update"
390444 SECRET_STORE_CREATE = "secretstore:create"
391- SECRET_STORE_LIST = "secretstore:list"
392445 SECRET_STORE_DELETE = "secretstore:delete"
393- SECRET_STORE_UPDATE = "secretstore:update "
446+ SECRET_STORE_LIST = "secretstore:list "
394447 SECRET_STORE_STATUS = "secretstore:status"
395- REMOTE_IDENTITY_GROUP_WRITE = "remoteidentitygroup:write"
396- REMOTE_IDENTITY_GROUP_READ = "remoteidentitygroup:read"
397- REMOTE_IDENTITY_WRITE = "remoteidentity:write"
398- REMOTE_IDENTITY_READ = "remoteidentity:read"
448+ SECRET_STORE_UPDATE = "secretstore:update"
449+ TESTING_FETCH_QUERIES = "testing:queries:get"
450+ TESTING_NO_PERMISSIONS = "testing:noperms"
451+ TESTING_ORG_CREATE = "testing:organization:create"
452+ TESTING_ORG_DELETE = "testing:organization:delete"
453+ USER_ASSIGN = "user:assign"
399454 USER_CREATE = "user:create"
400- USER_LIST = "user:list"
401- USER_UPDATE_ADMIN = "user:update_admin"
402455 USER_CREATE_ADMIN_TOKEN = "user:create_admin_token"
403456 USER_CREATE_SERVICE_ACCOUNT = "user:create_service_account"
404- USER_SET_PERMISSION_LEVEL = "user:set_strong_role"
405- USER_UPDATE = "user:update"
406- USER_INITIATE_PASSWORD_RESET = "user:initiate_password_reset"
407457 USER_DELETE = "user:delete"
408- USER_ASSIGN = "user:assign "
409- USER_SUSPEND = "user:suspend "
458+ USER_INITIATE_PASSWORD_RESET = "user:initiate_password_reset "
459+ USER_LIST = "user:list "
410460 USER_SET_PASSWORD = "user:set_password"
411- ROLE_LIST = "role:list"
412- ROLE_CREATE = "role:create"
413- ROLE_DELETE = "role:delete"
414- ROLE_UPDATE = "role:update"
415- ORG_VIEW_SETTINGS = "organization:view_settings"
416- ORG_EDIT_SETTINGS = "organization:edit_settings"
417- ORG_DEPLOYMENT_DOCTOR = "organization:deployment_doctor"
418- ORG_LIST_CHILDREN = "organization:list_children"
419- ORG_CREATE_CHILD_ORGANIZATION = "organization:create_child_organization"
420- ORG_AUDIT_USERS = "audit:users"
421- ORG_AUDIT_ROLES = "audit:roles"
422- ORG_AUDIT_DATASOURCES = "audit:datasources"
423- ORG_AUDIT_NODES = "audit:nodes"
424- ORG_AUDIT_PERMISSIONS = "audit:permissions"
425- ORG_AUDIT_QUERIES = "audit:queries"
426- ORG_AUDIT_ACTIVITIES = "audit:activities"
427- ORG_AUDIT_SSH = "audit:ssh"
428- ORG_AUDIT_ACCOUNT_GRANTS = "audit:accountgrants"
429- ORG_AUDIT_ORG = "audit:organization"
430- ORG_AUDIT_REMOTE_IDENTITIES = "audit:remoteidentities"
431- ORG_AUDIT_REMOTE_IDENTITY_GROUPS = "audit:remoteidentitygroups"
432- ORG_AUDIT_SECRET_ENGINES = "audit:secretengines"
433- ORG_AUDIT_SECRET_STORES = "audit:secretstores"
434- ORG_AUDIT_WORKFLOWS = "audit:workflows"
435- ORG_AUDIT_APPROVAL_FLOWS = "audit:approvalflows"
436- ORG_AUDIT_ACCESS_REQUESTS = "audit:accessrequests"
437- ORG_AUDIT_POLICIES = "audit:policies"
438- ORG_AUDIT_GROUPS = "audit:groups"
439- WORKFLOW_LIST = "workflow:list"
461+ USER_SET_PERMISSION_LEVEL = "user:set_strong_role"
462+ USER_SUSPEND = "user:suspend"
463+ USER_UPDATE = "user:update"
464+ USER_UPDATE_ADMIN = "user:update_admin"
440465 WORKFLOW_EDIT = "workflow:edit"
441- ACCESS_REQUEST_LIST = "accessrequest:list"
442- ACCESS_REQUEST_REQUESTER = "accessrequest:requester"
443- APPROVAL_FLOW_EDIT = "approvalflow:edit"
444- APPROVAL_FLOW_LIST = "approvalflow:list"
445- INSTALLATION_BLESS = "installation:bless"
446- INSTALLATION_CREATE = "installation:create"
447- INSTALLATION_REVOKE = "installation:revoke"
448- TESTING_ORG_CREATE = "testing:organization:create"
449- TESTING_ORG_DELETE = "testing:organization:delete"
450- TESTING_NO_PERMISSIONS = "testing:noperms"
451- TESTING_FETCH_QUERIES = "testing:queries:get"
452- GRANT_READ = "grant:read"
453- GRANT_WRITE = "grant:write"
454- REPORT_READ = "report:read"
455- BILLING_READ = "billing:read"
456- CREDENTIAL_READ = "credential:read"
457- CREDENTIAL_WRITE = "credential:write"
458- POLICY_READ = "policy:read"
459- POLICY_WRITE = "policy:write"
460- DISCOVERY_CONNECTOR_READ = "discoveryconnector:read"
461- DISCOVERY_CONNECTOR_WRITE = "discoveryconnector:write"
462- MANAGED_SECRET_CREATE = "managedsecret:create"
463- MANAGED_SECRET_LIST = "managedsecret:list"
464- MANAGED_SECRET_DELETE = "managedsecret:delete"
465- MANAGED_SECRET_UPDATE = "managedsecret:update"
466- MANAGED_SECRET_READ = "managedsecret:read"
466+ WORKFLOW_LIST = "workflow:list"
467467 end
468468
469469 # Query Categories, all the categories of resource against which queries are logged.
0 commit comments