|
|
|
|
|
|
|
|
|
|
|
¨ |
PCMS
is a high-integrity configuration
|
|
|
|
management
system
|
|
|
¨ |
Most
objects are written once and never modified
|
|
|
(we
call these “entities”)
|
|
|
|
– |
Archival
store, not a database
|
|
|
¨ |
What
security policies apply to such objects?
|
|
|
¨ |
What
are the threats?
|
|
|
¨ |
What
does this mean in implementation terms?
|
|