Page 1065 - (ISC)² CISSP Certified Information Systems Security Professional Official Study Guide
P. 1065

Written Lab


                1.  Describe the primary difference between discretionary and
                    nondiscretionary access control models.


                2.  List three elements to identify when attempting to identify and
                    prevent access control attacks.

                3.  Name at least three types of attacks used to discover passwords.

                4.  Identify the differences between a salt and a pepper (used when
                    hashing a password).
   1060   1061   1062   1063   1064   1065   1066   1067   1068   1069   1070