x500NameAtLeastOneMemberOf Function Description
Description
This function takes in two parameters of type bag of x500Name and returns true if there is at least one value in the first bag equal to at least one value in the second bag.
x500NameAtLeastOneMemberOf belongs to the ALFA function reference's
Set functions category. It maps to the XACML function identifier
urn:oasis:names:tc:xacml:1.0:function:x500Name-at-least-one-member-of, takes 2 arguments and returns a value of type boolean.
| Property | Value |
|---|---|
| Category | Set functions |
| # Arguments | 2 |
| Arguments |
|
| Return Value | boolean |
| Expressed As | pre-fix |
| Representation | ALFA short name |
| Allowed In Target | false |
| ALFA Shorthand | None |
| Commutative | true |
Example
/**
* Permit if at least one of the names is on the whitelist. Both attributes are bags
* of x500Name and can be multi-valued.
*/
rule x500NameAtLeastOneMemberOfExample{
permit
condition x500NameAtLeastOneMemberOf(names, whitelist)
}
In this example, the rule will return Permit if there is at least one value in the names bag equal to at least one value in the whitelist bag.
See Also
- anyOfAny
- anyURIAtLeastOneMemberOf
- base64BinaryAtLeastOneMemberOf
- booleanAtLeastOneMemberOf
- dateAtLeastOneMemberOf
- dateTimeAtLeastOneMemberOf
- dayTimeDurationAtLeastOneMemberOf
- doubleAtLeastOneMemberOf
- hexBinaryAtLeastOneMemberOf
- integerAtLeastOneMemberOf
- rfc822NameAtLeastOneMemberOf
- stringAtLeastOneMemberOf
- timeAtLeastOneMemberOf
- yearMonthDurationAtLeastOneMemberOf
Related Functions
Other functions in the Set functions category: