Title :
Least privilege and more [computer security]
Author :
Schneider, Fred B.
Author_Institution :
Dept. of Comput. Sci., Cornell Univ., NY, USA
Abstract :
With new methods for enforcing security policies comes the opportunity to formulate application-specific policies. But leveraging that flexibility might prove a difficult problem, not only in practice, but also in theory.
Keywords :
authorisation; computer network management; access control mechanisms; application-specific policies; flexibility; reference monitor implementation; security policies; Access control; Application software; Communication system software; Computer security; Data privacy; Data security; Hardware; Monitoring; Operating systems; Testing;
Journal_Title :
Security & Privacy, IEEE
DOI :
10.1109/MSECP.2003.1236236