diff --git a/opa-rego-policies/user-group.rego b/opa-rego-policies/user-group.rego index e6dfa67..f0f8b44 100644 --- a/opa-rego-policies/user-group.rego +++ b/opa-rego-policies/user-group.rego @@ -7,6 +7,6 @@ match[{"msg": msg}] { denied_groups := {"group1", "group2"} present_groups := input.request.userInfo.groups[_] - count(denied_users & present_groups) > 0 + count(denied_groups & present_groups) > 0 msg := sprintf("a member of one of the following groups created resource: %v", [concat(", ", denied_groups)]) -} \ No newline at end of file +}