RFC: Rename "disallow" key to "deny" in plugin rules #372
javierbrea
started this conversation in
RFCs
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Status
Request for Comments - Open for community feedback
Summary
This RFC proposes to rename the key "disallow" used in plugin rules to "deny", aligning with the more widely accepted and standard terminology in security and access control policies. In version 6.0, the plugin will support both keys but emit a warning at startup if any rules use "disallow". In a future version (likely 7.0 or later with at least 6 months after deprecation), support for "disallow" will be removed entirely.
Motivation
The current use of "disallow" to deny access or actions in rules is not aligned with the common standard. The key "deny" is more widely recognized and used in numerous policy frameworks such as AWS IAM, KMS, and standard software restriction policies. Aligning with this standard improves clarity and consistency.
Detailed Design
Version 6.0 Changes
Future Version (7.0 or Later)
Request for Feedback
Community feedback is requested on:
Thank you for reviewing this proposal. Your feedback is essential for a smooth transition.
Beta Was this translation helpful? Give feedback.
All reactions