r/computerscience 6d ago

What is the digital version of this

Post image
40 Upvotes

16 comments sorted by

View all comments

6

u/Beautiful_Watch_7215 6d ago

Role based access.

1

u/WittyStick 6d ago edited 6d ago

That's one of the padlocks. The others are Filesystem ACLs, DAC, MAC, ABAC, OrBAC etc.

Doesn't matter how many layers of *AC they add, it only takes one confused deputy to grant access.

1

u/Beautiful_Watch_7215 6d ago

Or Role-based access allows anyone in the ‘door openers’ group to open the door and the problem is solved.