Zero Trust Engineering — Session revocation and invalidation
securityv1/01 Views
/02 About
Identity and access engineering reference for session revocation and invalidation, including policy, logical interfaces, recovery and assurance.
Purpose: Session revocation and invalidation. Domain: Identity and access. Family: decision. Scenario trigger: Invalidate compromised or expired resource session. Input assurance: Session inventory, revocation event and token lineage. Evaluation: Determine outstanding grants and distributed cache exposure. Governing policy: Revocation propagation, grace and consistency policy. Resource-side obligation: Terminate access at all applicable enforcement points. Protected concern: Active distributed resource sessions. Logical interface: Session revocation event scope version acknowledgement and propagation time. Evidence: Revocation acceptance acknowledgement and residual session evidence. Failure: Revocation propagation lag or disconnected enforcer. Required recovery: Restrict affected resources and reconcile termination state. Architectural invariant: No retained session may outlive the authorized revocation consistency bound Adoption: replace reference roles with concrete owner-controlled services. Specify exact provider/consumer identities, schema fields and classifications, signal provenance and freshness, idempotency, authorization lifetime, timeout/retry limits, observation and tamper evidence. A denied or failed operation must not silently become a permitted one. Scope: original vendor-neutral, implementation-agnostic technical reference model. Illustrative logical components and behaviors are neither a deployed system nor evidence of regulatory compliance. Package identities remain stable within the package; cross-package semantic reconciliation requires separate explicit registry support.
Curated · other · unspecified · Published by Lattix · 28 elements · 34 relationships · validated on publish
/03 Contents
- Capability
- Identity and access, Session revocation and invalidation
- Role
- Identity and access owner
- Business Actor
- Access-requesting principal
- Activity
- Invalidate compromised or expired resource session, Verify: Session inventory, revocation event and token lineage, Assess: Determine outstanding grants and distributed cache exposure, Execute: Terminate access at all applicable enforcement points, Exception: Revocation propagation lag or disconnected enforcer, Recover: Restrict affected resources and reconcile termination state, Collect additional authorization evidence
- Application Component
- Session inventory, revocation event and token lineage, Determine outstanding grants and distributed cache exposure, Terminate access at all applicable enforcement points
- Application
- Active distributed resource sessions
- Policy
- Revocation propagation, grace and consistency policy
- API
- Session revocation and invalidation logical interface
- Message/Event Schema
- Session revocation event scope version acknowledgement and propagation time
- Data Store
- Revocation acceptance acknowledgement and residual session evidence
- Control
- Session revocation and invalidation enforcement assurance
- Risk
- Revocation propagation lag or disconnected enforcer risk
- Requirement
- No retained session may outlive the authorized revocation consistency bound
- Measure
- Session revocation and invalidation assurance completeness
- Trust Boundary
- Session revocation and invalidation authority boundary
- State
- Conditionally authorized, Denied or additional proof required, Additional assurance required, Active authorization revoked