For my organization we are using integration with LDAP/AD groups and we encountered the following behaviour: If a user is in group A where there is a deny path starts with rule on path "example" and the user is in a group B that has the inverse of that rule, I want to be able to specify the order such that the rule for group B has priority over group A or the other way.