Re: Are (object) capabilities a Zero Trust Security implementation mechanism?

Mike Stay <[email protected]> Tue, 21 Apr 2015 10:31:16 -0700
Newsgroups gmane.comp.capabilities.general
Message-ID <CAAvuwX8UrMK=rJ2F7rtNC-k0ePjstiXJD4bn1LtBRPrrCQ4F1Q@mail.gmail.com>
Capabilities are a way of expressing exactly what someone is trusted
to do---or better, what someone is *not* trusted to do, since we limit
authority by denying references.  If I give you a read-only facet, I
don't trust you to write.

On Tue, Apr 21, 2015 at 6:41 AM, Dave Chizmadia <[email protected]> wrote:
> Ref:
> http://searchcloudcomputing.techtarget.com/tip/Achieving-zero-trust-security
> -in-the-cloud
>
> For both kinds of caps, I come in as
> +1
>
> Next question is whether we have one or more good scalability stories...
>
>
> _______________________________________________
> cap-talk mailing list
> [email protected]
> http://www.eros-os.org/mailman/listinfo/cap-talk



-- 
Mike Stay
[email protected]