Re: Are (object) capabilities a Zero Trust Security implementation mechanism?
Mike Stay <[email protected]> Tue, 21 Apr 2015 10:31:16 -0700
| Newsgroups | gmane.comp.capabilities.general |
|---|---|
| Message-ID | <CAAvuwX8UrMK=rJ2F7rtNC-k0ePjstiXJD4bn1LtBRPrrCQ4F1Q@mail.gmail.com> |
Capabilities are a way of expressing exactly what someone is trusted to do---or better, what someone is *not* trusted to do, since we limit authority by denying references. If I give you a read-only facet, I don't trust you to write. On Tue, Apr 21, 2015 at 6:41 AM, Dave Chizmadia <[email protected]> wrote: > Ref: > http://searchcloudcomputing.techtarget.com/tip/Achieving-zero-trust-security > -in-the-cloud > > For both kinds of caps, I come in as > +1 > > Next question is whether we have one or more good scalability stories... > > > _______________________________________________ > cap-talk mailing list > [email protected] > http://www.eros-os.org/mailman/listinfo/cap-talk -- Mike Stay [email protected]