Discretionary access control
Discretionary Access Control (DAC) is a type of access control system that restricts access to objects based on the identity of subjects and/or groups to which they belong. The controls are discretionary in the sense that a subject with a certain access permission is capable of passing that permission (directly or indirectly) to any other subject.
Overview[edit]
In a DAC model, the owner of the protected system, data, or resource sets the policies defining who can access it. This model is commonly used in operating systems and database management systems.
Key Concepts[edit]
- Subjects: Entities (such as users or processes) that request access to objects.
- Objects: Resources (such as files, databases, or devices) that are being accessed.
- Permissions: The types of access granted to subjects, such as read, write, execute, or delete.
Advantages[edit]
- Flexibility: Owners can easily change access permissions.
- Simplicity: Easy to implement and understand.
Disadvantages[edit]
- Security Risks: Since permissions can be easily transferred, it can lead to unauthorized access.
- Lack of Central Control: Difficult to enforce organization-wide security policies.
Comparison with Other Models[edit]
DAC is often compared with other access control models such as Mandatory Access Control (MAC) and Role-Based Access Control (RBAC). Unlike DAC, MAC does not allow users to pass permissions to others, and RBAC assigns permissions based on roles rather than individual users.
Applications[edit]
DAC is widely used in various systems, including:
- Unix and Linux operating systems
- Windows NT and later versions
- Database management systems like Oracle Database and Microsoft SQL Server
Related Pages[edit]
- Access control
- Mandatory Access Control
- Role-Based Access Control
- Unix
- Linux
- Windows NT
- Database management system
See Also[edit]
Template:Access control models
Ad. Transform your life with W8MD's
GLP-1 weight loss injections special from $29.99 with insurance
|
WikiMD Medical Encyclopedia |
Medical Disclaimer: WikiMD is for informational purposes only and is not a substitute for professional medical advice. Content may be inaccurate or outdated and should not be used for diagnosis or treatment. Always consult your healthcare provider for medical decisions. Verify information with trusted sources such as CDC.gov and NIH.gov. By using this site, you agree that WikiMD is not liable for any outcomes related to its content. See full disclaimer.
Credits:Most images are courtesy of Wikimedia commons, and templates, categories Wikipedia, licensed under CC BY SA or similar.
Translate this page: - East Asian
中文,
日本,
한국어,
South Asian
हिन्दी,
தமிழ்,
తెలుగు,
Urdu,
ಕನ್ನಡ,
Southeast Asian
Indonesian,
Vietnamese,
Thai,
မြန်မာဘာသာ,
বাংলা
European
español,
Deutsch,
français,
Greek,
português do Brasil,
polski,
română,
русский,
Nederlands,
norsk,
svenska,
suomi,
Italian
Middle Eastern & African
عربى,
Turkish,
Persian,
Hebrew,
Afrikaans,
isiZulu,
Kiswahili,
Other
Bulgarian,
Hungarian,
Czech,
Swedish,
മലയാളം,
मराठी,
ਪੰਜਾਬੀ,
ગુજરાતી,
Portuguese,
Ukrainian
