Practice, 4th Edition Midterm
Review| Verified Exam Questions
with 100% Correct Clear Verified
Answers| All Graded A+|Latest
Premium Update|100%
Guaranteed Success.
T - Answer✅✅Access control is the central element of computer security.
T - Answer✅✅An auditing function monitors and keeps a record of user accesses to
system resources.
T - Answer✅✅The principal objectives of computer security are to prevent
unauthorized users from gaining access to resources, to prevent legitimate users
from accessing resources in an unauthorized manner, and to enable legitimate users
to access resources in an authorized manner.
T - Answer✅✅A user may belong to multiple groups.
T - Answer✅✅An access right describes the way in which a subject may access an
object.
F - Answer✅✅Traditional RBAC systems define the access rights of individual users
and groups of users.
, Access control - Answer✅✅1. __________ implements a security policy that
specifies who or what may have access to each specific system resource and the type
of access that is permitted in each instance.
Authentication - Answer✅✅__________ is verification that the credentials of a
user or other system entity are valid.
Authorization - Answer✅✅_________ is the granting of a right or permission to a
system entity to access a system resource.
DAC - Answer✅✅__________ is the traditional method of implementing access
control.
MAC - Answer✅✅__________ controls access based on comparing security labels
with security clearances.
mandatory access control - Answer✅✅A concept that evolved out of requirements
for military information security is ______ .
subject - Answer✅✅A __________ is an entity capable of accessing objects.
object - Answer✅✅A(n) __________ is a resource to which access is controlled.
RBAC - Answer✅✅__________ is based on the roles the users assume in a system
rather than the user's identity.
role - Answer✅✅A __________ is a named job function within the organization
that controls this computer system
Constraints - Answer✅✅__________ provide a means of adapting RBAC to the
specifics of administrative and security policies in an organization.
Cardinality - Answer✅✅__________ refers to setting a maximum number with
respect to roles.
ABAC - Answer✅✅Subject attributes, object attributes and environment attributes
are the three types of attributes in the __________ model.
access management - Answer✅✅The __________ component deals with the
management and control of the
ways entities are granted access to resources.
Object - Answer✅✅The basic elements of access control are: subject, __________,
and access right.
Environment - Answer✅✅The three types of attributes in the ABAC model are
subject attributes, object attributes, and _________ attributes.