home/glossary/Rule-Based Security Policy

Rule-Based Security Policy

nounid 3969·updated May 9, 2026
candidate

A security policy based on global rules imposed for all subjects. These rules usually rely on a comparison of the sensitivity of the objects being accessed and the possession of corresponding attributes by the subjects requesting access. Also known as discretionary access control (DAC).

polysemousMWE

Classifications

Entity Type

Requirement90%rule-basedr:entity.requirement.policy.v1

Sensitivity

unclassified

Information Class

unclassified

Variants

plural
Rule-Based Security Policies
possessive
Rule-Based Security Policy's
pluralpossessive
Rule-Based Security Policies'

Framework definitions

NISTIR 7298: Glossary of Key Information Security Terms, Revision 22 sensesview framework →
§1
A security policy based on global rules imposed for all subjects. These rules usually rely on a comparison of the sensitivity of the objects being accessed and the possession of corresponding attributes by the subjects requesting access.
§2 · sense_2_pending_review
A security policy based on global rules imposed for all subjects. These rules usually rely on a comparison of the sensitivity of the objects being accessed and the possession of corresponding attributes by the subjects requesting access. Also known as discretionary access control (DAC).
CNSSI-4009 (Glossary of Information Assurance Terms)1 senseview framework →
§1
A security policy based on global rules imposed for all subjects. These rules usually rely on a comparison of the sensitivity of the objects being accessed and the possession of corresponding attributes by the subjects requesting access. Also known as discretionary access control (DAC).
NIST SP 800-331 senseview framework →
§1
A security policy based on global rules imposed for all subjects. These rules usually rely on a comparison of the sensitivity of the objects being accessed and the possession of corresponding attributes by the subjects requesting access.

Outgoing relationships

No outgoing triples
This term is not the subject of any RDF-style relationship yet.

Incoming relationships

No incoming triples
No other term currently asserts a relationship to this one.