strazactl policy
Validate and manage PolicySets
On this page
strazactl policy [flags]
Options inherited from parent commands
--server string strazad base URL (overrides $STRAZA_SERVER and the server you logged into)
See also
- strazactl: Straza admin CLI
- strazactl policy activate: Publish one PolicySet’s stored text after the server’s checks, leaving every other set as published
- strazactl policy apply: Upload PolicySet YAML: a new set is stored off, and edits to a live set wait for policy activate
- strazactl policy deactivate: Turn a PolicySet off and recompile and distribute the snapshot
- strazactl policy delete: Delete a PolicySet that is off (turn a live one off first)
- strazactl policy diff: Diff the stored PolicySet against a local file
- strazactl policy list: List stored PolicySets
- strazactl policy show: Print a stored PolicySet: its story on stderr, the YAML alone on stdout
- strazactl policy simulate: Ask what a call would do for a subject, against the live policies
- strazactl policy validate: Validate PolicySet YAML files locally against the v1beta1 spec