Hello,
Authorisation rules are applied to the entities rather than the relationships. If a user is a member of a group that can see both Entity A and Entity B then they will see all relationships between them - you need to have access to the items at either end of the relationship.
For your scenario below you could try configuring rules so that the ConfidentialGroup has Search/Read access to both Entity A and Entity B but the PublicGroup only has access to Entity A (or B) as appropriate.
Details can be found here: https://go.documentation.sas.com/doc/en/vicdc/v_037/visgatorag/dh-authorization-tab-about.htm
Thanks,
Susan
... View more