answersLogoWhite

0


Best Answer

Under least privilege principles, a users should be granted full rights to their own files, e.g. create, read, write, modify, delete, execute, etc. The exact rights will depend some on what the underlying OS is. Beyond that, users may also be granted limited privileges to other files to enable them to perform their responsibilities. If they are a member of another group, they may be granted read, write, or execute privileges for "group" files. The way the privileges are assigned will depend on the access control model being used. Will it be Mandatory Access Control, Discretionary Access Control, Role Based Access Control, or some other model? Depending on the model, You may have to define other privileges like "take ownership", "give ownership", or "assign classification". You usually would only want to allow a user to have the "give ownership" rights for their own files, but have a higher arbiter having the "assign classification" rights.

User Avatar

Wiki User

13y ago
This answer is:
User Avatar

Add your answer:

Earn +20 pts
Q: Which access control list permission should you grant the user while following least privilege practices?
Write your answer...
Submit
Still have questions?
magnify glass
imp
Related questions

Which interface allows you to grant limited permission within active directory to individual users or groups to adhere to a principle of least privilege in administering active directory?

B). Delegation of Control Wizard


What is the difference between a role and a privilege?

A role defines the responsibilities and access levels a user has within a system or organization, while a privilege is a specific permission granted within that role to perform certain actions or access certain resources. Roles set the broader scope of authority, while privileges provide granular control over what actions can be taken within that role.


Which right can only be granted by enabling the Full Control file-level permission?

Which right can only be granted by enabling the Full Control file-level permission


What is the highest share level permission?

Full control


Why did farmers rethink their pest-control practices?

Moreover, concern was on the rise over the presence of chemicals in foods, forcing farmers to rethink their pest- and quality-control practices.


What are the unethical practices of the board of directors?

An unethical practice by a member of a board may be violating the Articles of Incorporation. They may encourage others to take control of the business without following the proper procedures.


Recommend at least five practices to control the un-authorized access to your online business?

Recommend at least five practices to control the un-authorized access to your online business.


During an aircraft emergency what vehicles has permission?

None of the above have permission to croos the runway without contacting the Control Tower for approval


What NTFS permission allows you to take ownership of a folder on an NTFS volume?

Full Control is the only permission that allows "Take Ownership".


What are the forming practices that enhance the process of photosynthesis?

it is use for control the leaf


Which security feature in windows 7 prevents malware by limiting user privilege levels?

User Account Control (UAC)


What type of permissions control access to folders over a network?

Share Permission