What happen when access group has mutiple ARN ?
Hi Team,
This is what i read somewhere :
"If a user has multiple roles, the roles are joined with an OR such that only one of the most specific AROs for each role needs to grant access in order to perform the operation."
Now let say for same class i have ARO defined in 2 ARN(Access role name) which is added in same access group. The 1st ARN has Access Deny for a class i.e MyClass-Work-Loan where as 2nd ARN has Access role Object defined for same class MyClass-Work-Loan and all operations has 5 as prod level.
Now when i try to open a rule or create object of MyClass-Work-Loan what will be the expected result ?