Access Control Flashcards
1
Q
Access Control Models
A
Access control ensures that only authenticated and authorized entities can access resources. Role-based access control (role-BAC) Rule-based access control (rule-BAC) Discretionary access control (DAC) Mandatory access control (MAC)
2
Q
Role-based access control (role-BAC)
A
A role-BAC model uses roles based on jobs and functions. A matrix is a planning document that matches the roles with the required privileges. reduce the administrative workload. Users within a group automatically inherit the
privileges assigned to the group.
3
Q
Rule-based access control (rule-BAC)
A
Common to use Routers and firewalls which use rules within access control lists (ACLs). Some rules are dynamic and react to events modifying the ACL.
4
Q
Discretionary Access Control (DAC)
A
Every object (such as files and folders) has an owner, and the owner establishes access for the objects.
5
Q
Mandatory Access Control (MAC)
A
uses labels (sometimes referred to as sensitivity labels or security labels) to determine access.