!!! Overview
[{$pagename}] is an [Attribute] Value of an [Entity] associated with a [BeyondCorp] [Zero Trust] [Framework]
[{$pagename}] are organized into tiers and assigned to each [Entity] within the
* [Device Inventory Service] by the [Trust Inferer]
* [Resource Inventory Service] which requires a minimum [{$pagename}] required for [access].
In order to [access] a given [Resource Inventory Service] [Entity], a [Device Inventory Service] [Entity] must have a [{$pagename}] assignment must be equal to or greater than the [resource]’s minimum [{$pagename}] requirement.
Using the [Principle of least privilege] and assigning the lowest [{$pagename}] of [access] required to complete a [request] decreases costs associated with support and productivity and also improves the [availability] of the [device].
As a [Device Inventory Service] [Entity] is allowed to access more [Sensitive Data], requires more frequent tests of [user] [presence] on the [device], so the more we [trust] a given [device], the shorter-lived its [credentials]. Therefore, limiting a device’s [{$pagename}] to the [Principle of least privilege] means that its [user] is minimally interrupted.
We may also various requirements for higher [{$pagename}] such the installation of the latest [operating System] update within a few business days to retain a high [{$pagename}], whereas [devices] on lower [{$pagename}] may have slightly more relaxed timelines.
[{$pagename}] is a form of [Lattice Based Access Control]
!! Category
%%category [BeyondCorp]%%
!! More Information
There might be more information for this subject on one of the following:
[{ReferringPagesPlugin before='*' after='\n' }]