1 | Based on a trusted ORB model: you must trust that your ORB will enforce the access policy on the server resource |
2 | The ORB determines: if this client on - behalf of this principal - can do this operation on this object |
3 | Server uses Access Control Lists (ACL) to control user access |
4 | Principal |
5 | Role |
6 | Rights |
7 | Operation |