E10-001 · Question #55
Which two mechanisms address threats of elevating user privileges in the application access domain?
The correct answer is A. Authentication and authorization. Securing the Application Access Domain Access control services regulate user and host access to data. These services mitigate the threats of spoofing user identity and elevating their privileges. Both these threats affect data integrity and confidentiality. Access control…
Question
Which two mechanisms address threats of elevating user privileges in the application access domain?
Exhibit
Options
- AAuthentication and authorization
- BAccess control to storage objects and Access Control Lists (ACLs)
- CAccess control to storage objects and auditing
- DUser authentication and Information Rights Management (IRM)
How the community answered
(55 responses)- A75% (41)
- B13% (7)
- C4% (2)
- D9% (5)
Explanation
Securing the Application Access Domain Access control services regulate user and host access to data. These services mitigate the threats of spoofing user identity and elevating their privileges. Both these threats affect data integrity and confidentiality. Access control mechanisms used in application access domain are user and host authentication (technical control) and authorization (administrative control). These mechanisms may lie outside the boundaries of the storage network and require various systems to interconnect with other enterprise identity management and authentication systems. NAS devices support the creation of access control lists that regulates user access to specific files. The Enterprise Content Management application enforces access to data by using Information Rights Management (IRM) that specifies which users have what rights to a document.
Topics
Community Discussion
No community discussion yet for this question.
