least privilege principle
minimaalõiguste printsiip
olemus
pääsupoliitika hea tava: iga subjekt (isik, üksus, protsess)
saab objektide kasutamiseks minimaalsed õigused,
mida ta vajab lubatavaks tegevuseks
=
an information security concept requiring that every entity (person, unit, process) must be able to access only the information and resources that are necessary for its legitimate purpose
ülevaateid
https://security.stackexchange.com/questions/114966/difference-between-need-to-know-least-privilege-and-confidential
https://blog.netwrix.com/2019/04/30/what-is-the-principle-of-least-privilege/
https://deepblue.lib.umich.edu/bitstream/handle/2027.42/99976/bengheng_1.pdf?sequence=1
https://en.wikipedia.org/wiki/Principle_of_least_privilege
vt ka
- teadmistarve