What is the difference between mandatory access control (MAC) and discretionary access control (DAC)?

Cybersecurity Fundamentals Hard

Cybersecurity Fundamentals — Hard

What is the difference between mandatory access control (MAC) and discretionary access control (DAC)?

Key points

  • MAC is system-enforced with security labels
  • DAC allows resource owners control over access
  • Users cannot override MAC policies
  • DAC permissions are discretionary
  • MAC is more restrictive than DAC

Ready to go further?

Related questions