access controls Flashcards
dac
determined by the owner
every object in the system has an owner, and the owner has control over its access
policy; and second, access rights, or permissions, can be assigned by the owner
to users to specifically control object access.
Mandatory access control (MAC)
etermined by a
computer system, not by a user or owner
subjects (users : d objects (files, folders, hardware
devices, network connections
A subject’s label dictates its security level,
or level of trust. An object’s label dictates what level of clearance is needed to access
it, also known as a trust level (this is also known as data labeling ).
role based
controlled by the system
sets of permissions, instead of individual permissions that are labelbased. use in GROUPS
rule bbased
focus on systems not users
eap
802.1x
data link layer
Supplicant: A software client running on a workstation. This is also known as
an authentication agent.
■ Authenticator: A wireless access point or switch.
■ Authentication server: An authentication database, most likely a RADIUS
server
rule based
Rule-based access control uses labels, is part of mandatory access control,
and should not be confused with role-based access control.