Lampson’s Access Control Model
Subject -> Access Request ->
Reference Monitor -> Object
‘nix permissions are divided in 3 categories, name them.
Owner Permissions Group Permissions Other (World) Permissions
State the Principle of Least
Privilege:
“Every program and every user of the system should operate using the least set of privileges necessary to complete the job.”
3 stages of access control
Identification
Authentication
Authorization
3 ways of Authentication
What you know
What you are
What you hold
What must Access Control be questioned on?
Acceptability
Accuracy
Cost