http://en.wikipedia.org/wiki/Object-capability_model
Edit: That of restricting each process to only be allowed to do certain things.