三種控制模式
MAC(Mandatory access control)
administrator設定某人能存取某些權限 (BIOS or OS Layer
DAC(Discretionary access control)
Owner設定某人能存取某些權限 (Linux chmod
http://linux.vbird.org/linux_basic/0210filepermission.php
RBAC(Role-Base access control)
Owner設定某群組能存取某些權限 (SELinux
認證方式
1.Something you know (密碼
2.Something you have (鑰匙
3.Something you are (指紋
以前大多使用Password Authentication Protocol (PAP), 輸入密碼後即可使用(不安全),現今用二次驗證(手機簡訊,指紋等等
網路服務則採用Challenge Handshake Authentication Protocol (CHAP), 憑證,SSO(single sign-on),等, 去反向Challenge Client是否為可信任的