A single macOS Access Control Entry on a file or directory. The subject is identified by AclSubject.
Fields
| Field Name | Description |
|---|---|
type - AceType!
|
The semantic class of the entry (allow / deny / audit). |
subject - AclSubject!
|
The macOS ACL subject (UUID with resolved POSIX UID/GID) this entry applies to. |
permissions - [AccessMask!]!
|
The set of permissions granted or denied by this entry. |
flags - [AceFlags!]!
|
The inheritance and audit flags on this entry. |
Used by
EndpointPathMacOStype: macOS-specific EndpointPath fields.
Example
Example
{
"type": "ACCESS_ALLOWED",
"subject": AclSubject,
"permissions": ["FILE_READ_DATA"],
"flags": ["OBJECT_INHERIT"]
}