aporeto-inc / trireme-lib

Simple, scalable and secure application segmentation
https://trireme.io
Apache License 2.0
300 stars 51 forks source link

encrypt policy rule #1047

Open likhita-8091 opened 3 years ago

likhita-8091 commented 3 years ago

When I configure the first policy p1, the action is allow. The second policy p2, the action is allow and encrypted, then the question is, why is there this comment when searching for the policy, don’t overwrite allow? If so, then the policy id of the encrypted policy p2 will not be matched , But the policy id of the first p1 image

likhita-8091 commented 3 years ago

Although your policy model has deny, observation mode, permission, and encryption, they all have priorities with each other, but can you add priority in the same mode, for example, if you have multiple permission policies with different policy names, hit Which one is