| (I) The principle that a security architecture should be designed
so that each system entity is granted the minimum system resources
and authorizations that the entity needs to do its work. (See:
economy of mechanism.)
(C) This principle tends to limit damage that can be caused by an
accident, error, or unauthorized act.
|