Skip to content

Align access rule model tc65 - #92

Merged
Martin187187 merged 10 commits into
admin-shell-io:IDTA-01004-3-1_Workingfrom
markus-heintel:align_access_rule_model_tc65
Jul 10, 2026
Merged

Align access rule model tc65#92
Martin187187 merged 10 commits into
admin-shell-io:IDTA-01004-3-1_Workingfrom
markus-heintel:align_access_rule_model_tc65

Conversation

@markus-heintel

Copy link
Copy Markdown
Contributor

Sync descriptions from TC65 WG24 security.

Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed
Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed
Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed
Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed
Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed
|Section
|Description

|ACCESSRULE:
Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed
Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed
Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed
Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed
The AAS Query Language and the AAS Access Rules share the same BNF grammar for formula expressions.
In addition to the text below, the further details of the formula expressions are explained in link:https://industrialdigitaltwin.io/aas-specifications/IDTA-01002/v3.1/query-language.html[IDTA-01002, Query Language] .

Parts of the grammar for access control are reused from the query language described in link:https://industrialdigitaltwin.io/aas-specifications/IDTA-01002/v3.2[IDTA-01002]. Having a common grammar for access control rules and query language can be used by implementations to optimize queries on access restricted information. The grammar for AAS access control rules includes Conditions from the AAS query language as defined by link:https://industrialdigitaltwin.io/aas-specifications/IDTA-01002/v3.2/query-language.html[IDTA-01002, Query Language].
Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed
Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed
An Access Rule Model defines a list of Access Rules.
An Access Rule Model <AllAccessPermissionRules> defines a list of <<access-permission-rules>>.

The access rule model <AllAccessPermissionRules> also contains lists of Attribute Groups <DEFATTRIBUTES>, Object Groups <DEFOBJECTS>, ACLs <DEFACLS> and Formulas <DEFFORMULAS>.
Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed

One access rule may directly define a Formula or may reuse a Formula definition.
|DEFFORMULAS
|Pre-defined formula. Formulas can be referenced using <UseFormula>.
Comment thread documentation/IDTA-01004/modules/ROOT/pages/access-rule-model.adoc Fixed
@@ -0,0 +1,18 @@
= Accountability for AAS Content and Digital Signatures
Comment thread documentation/IDTA-01004/modules/ROOT/pages/asset_binding.adoc Fixed
Comment thread documentation/IDTA-01004/modules/ROOT/pages/asset_binding.adoc Fixed

@github-advanced-security github-advanced-security AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

QDJVMC found more than 20 potential problems in the proposed changes. Check the Files changed tab for more details.

@Martin187187
Martin187187 merged commit ed63068 into admin-shell-io:IDTA-01004-3-1_Working Jul 10, 2026
3 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants