Policy enforcement point
Term · Cybersecurity · MLC-T-CYB-003185
1. Mechanism (e.g., access control mechanism of a file system or Web server) that actually protects (in terms of controlling access to) the resources exposed by Web services.
2. A network device on which policy decisions are carried out or enforced.
3. Enforces policy decisions in response to a request from a subject requesting access to a protected object; the access control decisions are made by the policy decision point.
| Identifier | MLC-T-CYB-003185 |
|---|---|
| Field | Cybersecurity |
| Abbreviation | PEP |
| References | NIST SP 800-95 from OASIS: A Brief Introduction to XACML; NIST SP 1800-15B; NIST SP 1800-15C; NIST SP 800-162; NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-003185",
"term": "Policy enforcement point",
"field": "Cybersecurity",
"definition": "1. Mechanism (e.g., access control mechanism of a file system or Web server) that actually protects (in terms of controlling access to) the resources exposed by Web services.\n\n2. A network device on which policy decisions are carried out or enforced.\n\n3. Enforces policy decisions in response to a request from a subject requesting access to a protected object; the access control decisions are made by the policy decision point.",
"abbreviation": "PEP",
"references": [
"NIST SP 800-95 from OASIS: A Brief Introduction to XACML",
"NIST SP 1800-15B; NIST SP 1800-15C",
"NIST SP 800-162",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/policy-enforcement-point/"
}
Record 3,169 of 4,669 in Cybersecurity terminology (MLC-0102). Request the full dataset.