An implementation of a default deny all or allow by exception policy across an enterprise environment, and a clear, concise, timely process for adding exceptions when required for mission accomplishments.
Sources:
CNSSI 4009-2015
from
CNSSI 1011
An approved list or register of entities that are provided a particular privilege, service, mobility, access or recognition.
Sources:
CNSSI 4009-2015