Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 358 discussion

Actual exam question from ISC's CISSP
Question #: 358
Topic #: 1
[All CISSP Questions]

Which of the following is a limitation of the Bell-LaPadula model?

  • A. Segregation of duties (SoD) is difficult to implement as the "no read-up" rule limits the ability of an object to access information with a higher classification.
  • B. Mandatory access control (MAC) is enforced at all levels making discretionary access control (DAC) impossible to implement.
  • C. It contains no provision or policy for changing data access control and works well only with access systems that are static in nature.
  • D. It prioritizes integrity over confidentiality which can lead to inadvertent information disclosure.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Cww1
Highly Voted 2 years, 2 months ago
Bell-LaPadula model has two major limitations: It provides confidentiality only. (no integrity, authentication ,etc.) It provides no method for management of classifications: It assumes all data are assigned with a classification It assumes that the data classification will never change. given answer correct
upvoted 18 times
jackdryan
1 year, 6 months ago
C is correct
upvoted 1 times
...
...
Soleandheel
Most Recent 11 months, 2 weeks ago
C. It contains no provision or policy for changing data access control and works well only with access systems that are static in nature.
upvoted 2 times
...
xxxBadManxxx
11 months, 3 weeks ago
Selected Answer: A
A. Segregation of duties (SoD) is difficult to implement as the "no read-up" rule limits the ability of an object to access information with a higher classification. The Bell-LaPadula model enforces the "no read-up" and "no write-down" rules, which restrict subjects from reading information at a higher security level (no read-up) and writing information to a lower security level (no write-down). While these rules help maintain confidentiality, they can hinder the implementation of segregation of duties by restricting access to information, making it challenging for users to perform their tasks if they require access to data at higher security levels to carry out their responsibilities effectively.
upvoted 1 times
Mikailia
10 months ago
Answer A says 'limits the ability of an object to access information'. It should be subject not object.
upvoted 1 times
...
...
Dam0s
1 year, 1 month ago
Selected Answer: C
Not A SOD: This is not a limitation of the Bell-LaPadula model but rather a characteristic of the model. The "no read-up" rule is intentional and reflects the model's emphasis on confidentiality.
upvoted 3 times
...
edwinpantony
1 year, 5 months ago
Selected Answer: C
C is Correct
upvoted 1 times
...
edwinpantony
1 year, 5 months ago
Selected Answer: A
Per ISC Official guide, In Bell-LaPadula model, difficult to Implement No Read-UP. Reference Chapter-8 Principles of Security Models, Design and Capabilities
upvoted 2 times
...
sec_007
2 years ago
Selected Answer: C
Limitations --------------------- * Only addresses confidentiality, control of writing (one form of integrity), *-property and discretionary access control * Covert channels are mentioned but are not addressed comprehensively * The tranquility principle limits its applicability to systems where security levels do not change dynamically. It allows controlled copying from high to low via trusted subjects. [Ed. Not many systems using BLP include dynamic changes to object security levels.] https://en.wikipedia.org/wiki/Bell%E2%80%93LaPadula_model
upvoted 1 times
...
DERCHEF2009
2 years, 2 months ago
Is that correct?
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...