Thursday, June 5, 2008

Capabilities categorisation

•Full file system privilege
…Reserved for Trusted Computing Base
…Capabilities: TCB, AllFiles, CommDD, DiskAdmin
•Extended privileges
…Reserved for the Trusted Computing Environment
…Generally user is never aware
…Capabilities: PowerMgmt, MultimediaDD, ReadDeviceData, WriteDeviceData, ProtServ, DiskAdmin, NetworkControl, SwEvent, SurroundingsDD, DRM, etc
•Basic privileges
…Can be understood and, in some cases, granted by user
…Capabilities: NetworkServices, LocalServices, ReadUserData, WriteUserData, UserEnvironment, Location

No comments: