Privilege is used in many different Contexts. For our discussions we will generally use the description on this page.

Privilege allows (or Denies) an Entity to perform a specific "Resource Action"

Privilege is a component of a Permission that identifies the type of Resource Action that has been delegated to some Trustee

Type Privilege delegation could be in any of the Contexts:

Privilege does not identity:

Although we do not claim to be the best at wordsmithing, this is how we think of Privilege and Permissions.

Access Control#

Access Control is the process of determining whether an Permission or Privilege has been Authorized by a Trustor to a Trustee.

Privilege Conflict #

Privilege Conflict appear when the specifications of two or more Access Control rules result in the conflicting decisions of permitting subjects access requests by either direct or indirect (inherit) access assignments.

