5 - Authorization Flashcards

1
Q

DAC vs. MAC

A

DAC the user can decide how it is shared

  • cannot control information flow
  • employer should decide how to handle sensitive data (sometimes)

MAC addresses these problems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Information flow problem

A

User a gives access to user b, user b gives access to user c

Files can be copied to get around security

Prevent with MAC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Access control list implementation

A

ACL is list of who can access file on what level

Each resource looks like a file

Each file has owner (UID) group, and world

Set read write execute for each

Only owner can change permissions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly