Protection Domains
Access Control Lists
- are stored in kernel
Discretionary vs. Mandatory Access Control
- M AC ensures that polices are enforced by system
Bell-LaPadula Model
Biba Model
Hypervisor Types
Type-1: hypervisor fiercely executes on hardware
Type-2: hypervisor runs on host os