Page 154 - CISSO_Prep_ Guide
P. 154
Reference Monitor
The diagram above is the same as the Information Management
Model diagram except that now we have replaced the "Rules"
with the mechanism that will enforce those rules - the reference
monitor. The reference monitor is just a concept - the idea that
represents the enforcement mechanism. The concept of the
reference monitor (it monitors a request by a subject to reference
an object) is implemented through an access control mechanism
- such as a security guard that protects the entrance to a building.
The security guard enforces the rules provided by the "owner" of
the facility and ensures that only authorized personnel are
permitted to enter. The guard may require some form of