Enforcing Policy
There are two styles:
- pessimistic enforcement:
- involves checking of permissions for every action by some trusted agent which is directly involved in actions;
- requires active prompting for obligations?
- used if trust is low and costs of violation high.
- optimistic enforcement:
- relies on objects controlling their social behaviour;
- backed up by auditing and a system of penalties;
- used if trust is high and cost of violation low.