Domain 3 Flashcards
What are the access control categories?
administrative controls, technical controls, physical controls
What are the access control types?
Preventative, Detective, corrective, recovery, deterrent, compensating.
What access control type(s) would a fence be?
Deterrent, preventative
What access control type(s) would a gate be?
Deterrent, preventative
What access control type(s) would bollards be?
preventative
What access control type(s) would lights be?
detective, deterrent
What access control type(s) would CCTV be?
detective , deterrent
What access control type(s) would a lock be?
preventative
What access control type(s) would a turnstile be?
preventative, deterrent
What access control type(s) would a contraband check be?
preventative, detective, deterrent
What access control type(s) would motion detectors be?
detective, deterrence
What access control type(s) would a guard be?
deterrent, detective, preventative, compensating
What access control type(s) would a dog be?
deterrent, detective, compensating
What are two examples of administrative controls?
Organisational policies and procedures
What are three examples of logical / technical controls?
Hardware/ software/ firmware, firewalls, routers, encryptions, biometric authentication
what are three examples of physical controls?
Locks, fences, guards, dogs, gates, bollards
What is FIDM
Federated identity management is having a common set of policies, practices and protocols in plance ot manage the identuty and trust into IT users and devices across organisations.
What is SSO
single sign on is a subset of federated identity management where users use a single sign on for multiple systems.
What does MAC stand for?
Mandatory Access Control
When is MAC used?
MAC is used when confidentiality is most important
access to an object is determined by labels and clearance.
What does RBAC stand for?
Role based access control
When is RBAC used?
role based access control is used when integrity is most important
What does ABAC stand for?
Attribute based access control
access to objects is granted based on subjects, objects and environmental conditions.
attributes could be:
- subject (user)
- object (resource)
- environment (special jobs assigned to normally restricted areas, local time)
What does DAC stand for?
Discretionary access control