public interface IAuthorizationPolicy
Reponsible for determining if access to a given action should be allowed or denied. A implementation could be one based on roles, as is done in the Servlet specification. (In other words, if the policy has an association between the given action and a role that has been granted to the user, then the decision will be to allow.)
boolean isAllowed(String actionName)
true if the the action should be allowed.actionName - name of action (e.g. org.pentaho.di.repository.create)true to allow