U3.2 Access Control Structures

Descripción

Masters Comp Sec Mapa Mental sobre U3.2 Access Control Structures, creado por Craig Parker el 13/11/2013.
Craig Parker
Mapa Mental por Craig Parker, actualizado hace más de 1 año
Craig Parker
Creado por Craig Parker hace más de 10 años
37
0

Resumen del Recurso

U3.2 Access Control Structures
  1. Access Control Matrix
    1. Based on a grid. Subjects on the side, objects accross
      1. Not practical for large organisations with 100's of subjects and 10000's of objects, to many empty spaces and wasted memory
    2. Access Control List
      1. Concentrate on objects
        1. ACL for object is stored within the object
          1. Checked before access is granted
          2. More widely used than Matrix
          3. Used by UNIX
            1. Main disadvantage is checking the list is time consuming, if access is revoked for a user then every object has to be checked for that user
            2. Capability list
              1. Focus on access rights of Subjects
                1. Concentrate on the rows of a matrix
                2. Used in databases
                  1. Disadvantages
                    1. difficult to ascertain the rights to an object
                      1. difficult to revoke permissions if owner has granted certain rights to subjects
                    2. How does the Reference Monitor ascertain which subjects have access to which objects?
                      Mostrar resumen completo Ocultar resumen completo

                      Similar

                      U2.1 Comp Sec: deals with prevention & detection of unauthorised actions by users of a comp system
                      Craig Parker
                      U3. Labels & Access Control
                      Craig Parker
                      U2.2 Fundamentals
                      Craig Parker
                      U3.1 Access Control
                      Craig Parker
                      U3.3 Administration
                      Craig Parker
                      U4. Security Models & Policy
                      Craig Parker
                      U4. Bell-LaPladula
                      Craig Parker
                      U4. Biba
                      Craig Parker
                      U4. Further Aspects of BLP
                      Craig Parker
                      U4. Harrison–Ruzzo–Ullman
                      Craig Parker
                      U4. Chinese Wall
                      Craig Parker