ACCESS CONTROL Flashcards

1
Q

Known as an identity based access control model

A

Discretionary access control

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

A central authority determines which files a user can access

A

Non discretionary access control

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Best describes a rule based access control model

A

Uses global rules to apply to all users equally

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Access control model on a firewall

A

Rule based

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What type of access controls rely on the use of labels

A

Mandatory

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Characteristic of mandatory access control

A

Prohibitive

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Role based access control

A

Groups users into roles based on organisations hierarchy.

Any question mentioning hierarchy is always going to be role based ACL

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Rule based access control

A

Uses global rules applied to all users equally

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Bell La Padula

A
Simple security property- not allowed to read up (obvious). “No read up”
 * Security property-not allowed to write to lower level “ no write down”
Strong star (*)- can not read or write to an object of higher/lower sensitivity 

DOESNT DEAL WITH COVERT CHANNELS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

BIBA

A

No read down
No write up

    • always is write
How well did you know this?
1
Not at all
2
3
4
5
Perfectly