Skip to content

AZ401: Rules for a table no type maps to ​

rules schema.table names the table of one of the policy's types: its rules use that type's permissions. Declare the type, or fix the table's name. Only one type maps to a table with rules: give another type its own table, or a view of this one.

Reported when the policy is compiled: rowfence check, the editor, rowfence dev.

The mistake ​

authz
app role app_user
type user = app.users
type folder = app.folders
  owner : user = owner_id
  can view = owner
rules app.folder
  select : view
line 7: rules for app.folder, but no type maps to that table [AZ401]

Fixed ​

authz
app role app_user
type user = app.users
type folder = app.folders
  owner : user = owner_id
  can view = owner
rules app.folders
  select : view