HP-UX AAA Server A.07.01 Administrator's Guide

Notes:
Customers can also write their own policy decision files and invoke them from
the FSM or the user profiles.
This chapter discusses only the new (and easier to use) format for creating decision
files. The old format contains policy group entries that are still supported. However,
the old format is not documented in this chapter. For information about the old
syntax, see Appendix E (page 445).
You cannot create a single decision file using syntax from both formats.
Defining a Policy in a Decision File
A decision file is evaluated from beginning to end against the request, by removing,
modifying and/or adding A-V pairs as specified until an Exit command is encountered.
Any remaining lines are not evaluated. The Exit command specifies the event to be
returned to the FSM. The event is used to control the flow through the FSM. If the end
of the file is reached without executing an Exit command then the ACK event is returned
to the FSM. For more information on FSMs, see Chapter 24 (page 270).
284 Customizing the HP-UX AAA Server Using Policies