<div style="font-family:Arial, Helvetica, sans-serif; font-size:12px; color:#00000">‌Hello,<br>
I am trying to implement an authorization to allow users to modify or delete only the objects they have created. He should also be able to define other owner (using assignement with 'owner' relation)<br>
<br>
To filter on creatorRef, I tried many think like the following but without success:<br>
<br>
<object id="156"><br>
<type>RoleType</type><br>
<filter><br>
<span class="hljs-tag"> <<span class="hljs-name">q:equal</span>></span><br>
<span class="hljs-tag"> <<span class="hljs-name">q:path</span>></span>metadata/creatorRef<span class="hljs-tag"></<span class="hljs-name">q:path</span>></span><br>
<span class="hljs-tag"><<span class="hljs-name">q:value</span>></span><br>
<span class="hljs-tag"> <<span class="hljs-name">q:reference</span>></span><br>
<span class="hljs-tag"><<span class="hljs-name">q:variable</span>></span>self<span class="hljs-tag"></<span class="hljs-name">q:variable</span>><br>
</span><span class="hljs-tag"></<span class="hljs-name">q:reference</span>></span><br>
<span class="hljs-tag"></<span class="hljs-name">q:value</span>><br>
</<span class="hljs-name">q:equal</span>></span><br>
</filter><br>
</object><br>
<br>
Is it possible to implement this ?<br>
<br>
Thanks in advance for your help</div>