This page (revision-1) was last changed on 29-Nov-2024 16:16 by UnknownAuthor

Only authorized users are allowed to rename pages.

Only authorized users are allowed to delete pages.

Page revision history

Version Date Modified Size Author Changes ... Change note

Page References

Incoming links Outgoing links

Version management

Difference between version and

At line 1 added 23 lines
!!! Overview
[{$pagename}] is an [Attribute] Value of an [Entity] associated with a [BeyondCorp] [Zero Trust] [Framework]
[{$pagename}] are organized into tiers and assigned to each [Entity] within the
* [Device Inventory Service] by the [Trust Inferer]
* [Resource Inventory Service] which requires a minimum [{$pagename}] required for [access].
In order to [access] a given [Resource Inventory Service] [Entity], a [Device Inventory Service] [Entity] must have a [{$pagename}] assignment must be equal to or greater than the [resource]’s minimum [{$pagename}] requirement.
Using the [Principle of least privilege] and assigning the lowest [{$pagename}] of [access] required to complete a [request] decreases costs associated with support and productivity and also improves the [availability] of the [device].
As a [Device Inventory Service] [Entity] is allowed to access more [Sensitive Data], requires more frequent tests of [user] [presence] on the [device], so the more we [trust] a given [device], the shorter-lived its [credentials]. Therefore, limiting a device’s [{$pagename}] to the [Principle of least privilege] means that its [user] is minimally interrupted.
We may also various requirements for higher [{$pagename}] such the installation of the latest [operating System] update within a few business days to retain a high [{$pagename}], whereas [devices] on lower [{$pagename}] may have slightly more relaxed timelines.
[{$pagename}] is a form of [Lattice Based Access Control]
!! Category
%%category [BeyondCorp]%%
!! More Information
There might be more information for this subject on one of the following:
[{ReferringPagesPlugin before='*' after='\n' }]