CISSP Domain 3: Techniques of Ensuring CIA Flashcards
1
Q
What is process confinement
A
- allows to restrict actions of a program
- allows process to read from and write to only certain memory locations and resources
2
Q
How’s also called confinement?
A
sandboxing
3
Q
What security principle does confinement use?
A
least privilege
4
Q
What’s the goal of confinement?
A
prevent data leakage to unauthorized programs, users and systems
5
Q
What are the two authority levels in a simple system?
A
user and kernel
6
Q
What does authority level say to the OS?
A
what a process can do - how to set the bounds for a process