Data filter policies are additive and deny access to rows of data.
Data filter policies function in the following ways:
•If there are no data filter policies, Data Governance and Catalog grants access to all rows of data.
•For each data filter rule, if the condition is met, Data Governance and Catalog denies access to the rows.
•If a data element has multiple data classifications, Data Governance and Catalog denies access to the row if any of the classifications matches the filter criteria.
•Data filter policies are additive. If one policy denies access to one row, and a second policy denies access to a second row, the user doesn't have access to either row if both policies apply.