Positive-List: A positive-list, more commonly referred to as an “allowlist,” is an access control strategy that specifies allowed entities, such as user IDs, email addresses, or IP addresses. Access is granted only to those on the list, while all others are denied by default. It’s used in security implementations for network access, email filtering, and software execution policies.
Categories: CC D5: Security Operations | CCSP D4: Cloud Application Security | CISM D3: Information Security Program | CISSP D5: Identity and Access Management (IAM) | Security+ D5: Security Program Management and Oversight | SSCP D2: Access Controls
« Back to Glossary Index