This table maps the relationship between identities and the user accounts that are allowed to access the messages associated to these identities through the mail.identity_id column. It does not indicate what access rights apply, the permissions being managed separately by group permissions and membership. Only identities that have the restricted attribute are concerned by this mapping. The restrictions also require the Row Level Security feature on the database server (PostgreSQL 9.5 or newer).
Structure of identities_permissions
role_oidoid
Reference to the PostgreSQL role, through the cluster-wide  pg_roles table.
identity_idint
Identity of messages that are accessible by that role.
                REFERENCES identities