Authorization



Definition

The security quality subfactor, authorization, is the degree to which a business enterprise, application, component, or center properly grants and enforces access and usage privileges of authenticated externals.

Measurement

Authorization is typically measured in terms of:

Requirements

See authorization requirements.

Mechanisms

Typical mechanisms for implementing support for authorization include:

Guidelines

The following guidelines have been found to be useful regarding authorization :