Access Control Fundamentals
by Dave Yoc

1. Best Practices for Access control.
1.1. Mandatory Vacations
1.2. Implicit Deny
1.3. Least Privilege
1.4. Job Rotation
1.5. Separation of Duties
2. What is access control
2.1. Access control models.
2.1.1. Mandatory Access Control (MAC)
2.1.2. Discretionary Access control (DAC)
2.1.3. RBAC
2.1.3.1. Role Based Access Control
2.1.3.2. Rule Based Access Control