Chapter 17: Managing Identities and Access Flashcards
access control mechanism
dictates how subjects access objects
reference monitor
abstract machine which mediates all access subjects have to objects: to ensure subjects have necessary access rights and to protect objects from unauthorized access and destructive modification
six main access control models
discretionary, mandatory, role-based, rule-based, attribute-based, risk-based
DAC
discretionary access control
discretionary access control
data owners dictate what subjects have access to files and resources they own
access control lists
bound to objects and indicate what subjects can use them
MAC
mandatory access control
mandatory access control model
uses a security label system
MAC model
users have clearances and resources have security labels with data classifications; MAC system compare these two attributes to determine access control
IFTTT rules
if this, then that
most granular of the access control models
ABAC; Attribute-based access control
XML
Extensible Markup Language
Extensible Markup Language
rules for encoding documents in machine-readable form for interoperability between various web technologies
SPML
Service Provisioning Markup Language
Service Provisioning Markup Language
automation of user management and access entitlement configuration for electronically published services across multiple provisioning systems