CAP · Question #364
Which of the following statements about System Access Control List (SACL) is true?
The correct answer is A. It contains a list of any events that are set to audit for that particular object. A System Access Control List (SACL) is a component of Windows security architecture that specifies which access attempts on an object should be logged in the security audit log. It contains audit entries (System Access Control Entries, or SACEs) that define what events - such…
Question
Which of the following statements about System Access Control List (SACL) is true?
Options
- AIt contains a list of any events that are set to audit for that particular object.
- BIt is a mechanism for reducing the need for globally unique IP addresses.
- CIt contains a list of both users and groups and whatever permissions they have.
- DIt exists for each and every permission entry assigned to any object.
How the community answered
(45 responses)- A93% (42)
- B4% (2)
- D2% (1)
Explanation
A System Access Control List (SACL) is a component of Windows security architecture that specifies which access attempts on an object should be logged in the security audit log. It contains audit entries (System Access Control Entries, or SACEs) that define what events - such as successful or failed access - are audited for a specific object. Option B describes Network Address Translation (NAT). Option C describes a Discretionary Access Control List (DACL), which governs who has permissions. Option D describes an individual Access Control Entry (ACE), not the SACL itself.
Topics
Community Discussion
No community discussion yet for this question.