Formal Models of Access Control
Most users have encountered access control restrictions (some of the most visible being those protecting access to computer resources), such as when they have typed an incorrect password and been denied access. Because many ways are available for restricting access to resources, it is helpful to refer to models to help design effective access controls. Following are some of the formal models of access control:
Discretionary access control (DAC)—With DAC, the owner of the resource decides who gets in and changes permissions as needed; permissions can be transferred.
Mandatory access control (MAC)—With MAC, permission to access a system or any resource is determined by the sensitivity of the resource and the security ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access