The principle that a security architecture should be designed in a way that minimizes 1) the number of components that require trust; and 2) the extent to which each component is trusted.
						                            Source(s):
						                            
								                            
                                                                    CNSSI 4009-2015