OASIS eXtensible Access Control Markup Language (XACML) TC

 View Only
  • 1.  RE: Negative Policies

    Posted 09-20-2001 17:25
    On Thu, 2001-09-20 at 13:15, Hal Lockhart wrote:
    > 
    > > As for blindly taking care of adding a "new" operation, the policy
    > > shouldn't be so niave of its domain of resources not take care of such
    > > things.
    > 
    > My orginal point (at the F2F meeting) was that this sort of thing seems to
    > happen all the time as a scan of something like bugtraq will reveal.
    > 
    > Hal
    
    and i believe the response to that was that misuse is an implementation
    issue, not a fault in the model. cars and liquor don't mix, but it is
    not a design flaw in the automobile (frivolous lawsuits aside :o)
    
    b