Page 154 - CISSO_Prep_ Guide
P. 154

Reference Monitor

            The diagram above is the same as the Information Management
            Model diagram except that now we have replaced the "Rules"
            with the mechanism that will enforce those rules - the reference
            monitor. The reference monitor is just a concept - the idea that
            represents the enforcement mechanism. The concept of the
            reference monitor (it monitors a request by a subject to reference
            an object) is implemented through an access control mechanism
            - such as a security guard that protects the entrance to a building.

            The security guard enforces the rules provided by the "owner" of
            the facility and ensures that only authorized personnel are
            permitted to enter. The guard may require some form of
   149   150   151   152   153   154   155   156   157   158   159