Security Plane
Reference: This page is a source-based technical synthesis of the LaTeX chapter cited below. For exact syntax, availability or ABI signatures, verify the versioned source, manifest and executable tests.
Scope and source boundary
Groups, roles and certificates participate in runtime security, while contextual business policies still govern Actions.
Runtime security is a cross-cutting authority and transport problem, not merely a hidden interface option. Source chapters discuss groups, roles and certificates alongside business policy and execution-context authorization. A transport credential identifies or protects a connection; it cannot replace the domain decision about whether an Action is valid.
Engineering rules
- Separate authentication, published permission and contextual domain authority.
- Use the same policy for local and remote invocations.
- Validate caller context at the action boundary, not only in a view.
- Trace policy decisions and protect identities, certificates and credentials.
Chapter outline (original LaTeX headings)
- Security as a Runtime Concern
- Groups as Security Domains
- The Three Key Families
- Group Keys
- Group Role Keys
- User Keys
LaTeX provenance
Primary chapter: Runtime/logiCells Runtime Programming with RadStudio/secure-runtime-groups-roles-and-certificates.tex.