Principle of Least Privilege - History

History

The original formulation is from Jerome Saltzer:

Every program and every privileged user of the system should operate using the least amount of privilege necessary to complete the job. —

Peter J. Denning, in his paper "Fault Tolerant Operating Systems", set it in a broader perspective among four fundamental principles of fault tolerance.

Dynamic assignments of privileges was earlier discussed by Roger Needham in 1972.

Historically, the oldest instance of least privilege is probably the source code of login.c, which begins execution with super-user permissions and—the instant they are no longer necessary—dismisses them via setuid with a non-zero argument.

Read more about this topic:  Principle Of Least Privilege

Famous quotes containing the word history:

    False history gets made all day, any day,
    the truth of the new is never on the news
    False history gets written every day
    ...
    the lesbian archaeologist watches herself
    sifting her own life out from the shards she’s piecing,
    asking the clay all questions but her own.
    Adrienne Rich (b. 1929)

    Books of natural history aim commonly to be hasty schedules, or inventories of God’s property, by some clerk. They do not in the least teach the divine view of nature, but the popular view, or rather the popular method of studying nature, and make haste to conduct the persevering pupil only into that dilemma where the professors always dwell.
    Henry David Thoreau (1817–1862)

    The principle office of history I take to be this: to prevent virtuous actions from being forgotten, and that evil words and deeds should fear an infamous reputation with posterity.
    Tacitus (c. 55–117)