More Granular User Control
|
Role-based Access Control (RBAC) divides administrative tasks among a number of roles that grant only necessary authority. RBAC ensures that all administrative actions are traceable to an authenticated individual instead of just the ROOT account, providing greater accountability. |
| Reduced Risk of Security Violations |
The combination of labeling of all objects, clearance levels for each user, and strong audit capabilities make all users accountable and all actions traceable, greatly diminishing the risk of security violations. |
| Increased Privacy |
Mandatory Access Control allows information to be processed at multiple security levels allowing users to share files with other users of the same security level. Administrators can also restrict the security levels of information sent to individual printers and restrict who can view print queue information. |
| Protection of Local Devices |
Administrators can allocate devices based on labels, which lets them allocate a device to securely move data on or off the system to another medium. Pluggable Authentication Modules provide failed-login account locking, trusted-path checking, and machine generated passwords, without the need to change code. |
| Independent Certification - Common Criteria |
Sun products have successfully passed many government-sponsored and independent valuation programs. Trusted Solaris has passed common criteria certification at a level higher than the many other Operating Systems on the market today which signifies the high degree of security in the system. |