!!! Overview [{$pagename}] is an [Attribute] Value of an [Entity] associated with a [BeyondCorp] [Zero Trust] [Framework] [{$pagename}] are organized into tiers and assigned to each [Entity] within the * [Device Inventory Service] by the [Trust Inferer] * [Resource Inventory Service] which requires a minimum [{$pagename}] required for [access]. In order to [access] a given [Resource Inventory Service] [Entity], a [Device Inventory Service] [Entity] must have a [{$pagename}] assignment must be equal to or greater than the [resource]’s minimum [{$pagename}] requirement. Using the [Principle of least privilege] and assigning the lowest [{$pagename}] of [access] required to complete a [request] decreases costs associated with support and productivity and also improves the [availability] of the [device]. As a [Device Inventory Service] [Entity] is allowed to access more [Sensitive Data], requires more frequent tests of [user] [presence] on the [device], so the more we [trust] a given [device], the shorter-lived its [credentials]. Therefore, limiting a device’s [{$pagename}] to the [Principle of least privilege] means that its [user] is minimally interrupted. We may also various requirements for higher [{$pagename}] such the installation of the latest [operating System] update within a few business days to retain a high [{$pagename}], whereas [devices] on lower [{$pagename}] may have slightly more relaxed timelines. [{$pagename}] is a form of [Lattice Based Access Control] !! Category %%category [BeyondCorp]%% !! More Information There might be more information for this subject on one of the following: [{ReferringPagesPlugin before='*' after='\n' }]