MAC (Mandatory Access Control): Often used when Confidentiality is most important.
Almost always used in the military or in organizations where confidentiality is very important, rarely used in the private sector (unless in defense contracting).
- Access to an object is determined by labels and clearance
- Labels: Objects have Labels assigned to them, the subjects clearance must dominate the objects label.
- Clearance: Subjects have Clearance assigned to them.
- Based on a formal decision on a subjects current and future trustworthiness.
The higher the clearance the more in depth the background checks should be.