Pattern 97 / SECURITY
Policy Decision Point / Policy Enforcement Point
Use this when Separating authorization decisions from enforcement locations.
- Pressure
- Separating authorization decisions from enforcement locations
- Mechanism
- Centralize policy evaluation and enforce decisions at gateways, services, or data boundaries
- Toll
- Latency and availability of policy checks become critical