Access control organization > Security groups

Network Access CHAPTER 7 97 More precise than groups . RBAC allows the application of the principle of least privilege, granting the precise level of access required to perform a function. EXAM WARNING Be careful! RBAC has two different definitions in the Security exam. The first is defined as role-based access control. A second definition of RBAC that applies to control of (and access to) network devices is defined as rule-based access control . This consists of creating ACLs for those devices, and configuring the rules for access to them. ACCESS CONTROL ORGANIZATION When you are working with access control, it's typically easiest to control access by groups of access control subjects instead of applying security on an individual level. These access control subjects would, of course, have to have some common factor which would allow them to be grouped together such as sharing a job role,