What is the security model you propose?
With at least two examples, please. To help me understand.
What is the security model you propose?
With at least two examples, please. To help me understand.
https://en.wikipedia.org/wiki/Capability-based_security
For examples have a look at the "Implementations" section.
Take $5 from your wallet to pay for a sandwich. That bill is a capability.
You can't accidentally give away your car when you do it. You can easily delegate the giving of the $5 to someone else safely.
Example 2
Take a file on a floppy disk for an IBM XT and make a backup of it. You can hand that backup disk to anyone and your original is safe.
You can use that file with any random shareware disk from your user group meeting and in no way could it cause you any more loss than the disk in it is on.
A disk is a capability.
Example 3
You are asked your location. You reply correctly.
The answer does not allow you to be tracked forever.
Example 4
You have a 15 amp outlet. You can't take down the power grid by accident, nor burn down the house. The outlet is a 15 amp capability.
You explicitly give it permissions to access something: give it a document you want to edit, allow it to save a result at some location (without giving it an idea what else exists at that location), allow it to connect to certain hosts on the internet, but not others, politely decline a request to use your camera, etc.
Very much like you do with a web app running in your browser.
Your customer comes to the office comes and wants to use the printer while he’s there, so you use your capability to send them a capability that will give them access to the printer (b/w only still, they can’t get color because you can’t get color) for an hour. However their capability is restricted such that they will not be able to grant anyone else access to the printer