Least Privilege Shopping
Least
 

Information About

Least Privilege




So the idea of the principle is to grant just the minimum possible privileges to permit a legitimate action, in order to enhance protection of data and functionality from faults ( Fault Tolerance ) and malicious behaviour ( Computer Security ).

The principle of minimal privilege is also known as or similar to POLA: principle of least authority.


HISTORY

The principle came up around mid-1970s, and generally the book "Fault Tolerant Operating Systems" by Peter J. Denning is referred as the original source, even though it was described under different names by many contemporary papers, like ''The protection of information in computer systems'', by Saltzer and Schroeder.

The original formulation from Saltzer and Schroeder:
Every program and every user of the system should operate using the least set of privileges necessary to complete the job.



SEE ALSO



REFERENCES

  • Ben Mankin, ''The Formalisation of Protection Systems'', Ph.D thesis, University of Bath, 2004

  • P. J. Denning, ''Fault tolerant operating systems'', Computing Surveys (USA), 8(4):359{389, December 1976.

  • Jerry H. Saltzer and Mike D. Schroeder, ''The protection of information in computer systems'', Proceedings of the IEEE, vol. 63 (no. 9), pp. 1278-1308, Sept 1975. The paper can be found here .



EXTERNAL LINKS