MAC
Mandatory Access Control
An access model where the system enforces access based on labels and clearances.
Mandatory Access Control enforces access centrally based on security labels and clearances assigned by the system, not by resource owners. Because users cannot alter permissions on their own files, it is the strictest approach and is favored in military and high assurance environments, with SELinux as a practical example. It contrasts sharply with discretionary access control, where owners grant access, and with role based access control, where permissions follow job functions. Watch for the unrelated networking and cryptographic meanings of the same three letters.
Mandatory Access Control: the system enforces labels and clearances; users cannot change them (think military).
Looking MAC up is step one. Getting tested on it is step two.
A free account opens all 4 Domain 1 objectives, 271 exam-style questions with a lesson and a lab on each, a placement check that skips what you already know, and a dated plan. No card.
Not affiliated with or endorsed by CompTIA.
