richard offer wrote: >applications must be able to determine if a given action is acceptable under a >given policy without performing it. Why? Can you give an example? I've thought mostly about transparent protection of legacy applications, so maybe I'm overlooking something obvious. Can you elaborate? >Loading the policies into X is a trivial matter of programming, coming up with >APIs that can scale to the all the possible policies isn't. Yup, good API's are the $64,000 question.
This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 14:15:28 PDT