Which of the following would constitute the BEST exampl…
Which of the following would constitute the BEST example of a password to use for access to a system by a
network administrator?
which of the following services?
RADIUS incorporates which of the following services?
which of the following?
Like the Kerberos protocol, SESAME is also subject to which of the following?
which of the following circumstances?
Kerberos is vulnerable to replay in which of the following circumstances?
Which of the following is addressed by Kerberos?
Which of the following is addressed by Kerberos?
which of the following?
The authenticator within Kerberos provides a requested service to the client after validating which of the
following?
Which of the following is NOT true of the Kerberos protocol?
Which of the following is NOT true of the Kerberos protocol?
which of the following?
The primary service provided by Kerberos is which of the following?
What is a secure database technique that could explain …
For competitive reasons, the customers of a large shipping company called the “Integrated International Secure
Shipping Containers Corporation” (IISSCC) like to keep private the various cargos that they ship. IISSCC uses
a secure database system based on the Bell-LaPadula access control model to keep this information private.
Different information in this database is classified at different levels. For example, the time and date a ship
departs is labeled Unclassified, so customers can estimate when their cargos will arrive, but the contents of all
shipping containers on the ship are labeled Top Secret to keep different shippers from viewing each other’s
cargos.
An unscrupulous fruit shipper, the “Association of Private Fuit Exporters, Limited” (APFEL) wants to learn
whether or not a competitor, the “Fruit Is Good Corporation” (FIGCO), is shipping pineapples on the ship “S.S.
Cruise Pacific” (S.S. CP). APFEL can’t simply read the top secret contents in the IISSCC database because of
the access model. A smart APFEL worker, however, attempts to insert a false, unclassified record in the
database that says that FIGCO is shipping pineapples on the S.S. CP, reasoning that if there is already a
FIGCO-pineapple-SSCP record then the insertion attempt will fail. But the attempt does not fail, so APFEL can’t
be sure whether or not FIGCO is shipping pineapples on the S.S. CP.
What is the name of the access control model property that prevented APFEL from reading FIGCO’s cargo
information? What is a secure database technique that could explain why, when the insertion attempt
succeeded, APFEL was still unsure whether or not FIGCO was shipping pineapples?
A confidential number used as an authentication factor …
A confidential number used as an authentication factor to verify a user’s identity is called a: