Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 292 discussion

Actual exam question from ISC's CISSP
Question #: 292
Topic #: 1
[All CISSP Questions]

What is a use for mandatory access control (MAC)?

  • A. Allows for mandatory user identity and passwords based on sensitivity
  • B. Allows for mandatory system administrator access control over objects
  • C. Allows for labeling of sensitive user accounts for access control
  • D. Allows for object security based on sensitivity represented by a label
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Soleandheel
11 months, 2 weeks ago
D. Allows for object security based on sensitivity represented by a label Mandatory Access Control (MAC) is a security model that enforces access controls based on security labels assigned to objects (such as files, documents, or resources) and the sensitivity levels of users. Users and objects are assigned security labels, and access to objects is determined by comparing the labels and ensuring that users have the necessary permissions based on the security policy. MAC is commonly used in environments where strict access control and data classification are essential, such as government and military settings.
upvoted 2 times
...
DJOEK
1 year, 10 months ago
Selected Answer: D
Its not A because passwords... Its not C because only administrator accounts. Its not D because only sensitive user accounts.
upvoted 1 times
DJOEK
1 year, 10 months ago
sorry i mean: Its not A because passwords... Its not B because only administrator accounts. Its not C because only sensitive user accounts.
upvoted 1 times
...
jackdryan
1 year, 6 months ago
D is correct
upvoted 1 times
...
...
rajkamal0
1 year, 11 months ago
Selected Answer: D
MAC restricts access to data based on varying degrees of security requirements for the information contained in the objects. A policy-based means of restricting access to objects based on the sensitivity (as represented by a label) of the information contained in the objects and the formal authorization (access control privileges) of subjects to access information of such sensitivity. This means of restricting access to objects based on the sensitivity of the information contained in the objects and the formal authorization (i. e., clearance, formal access approvals, and need to know) of subjects to access information of such sensitivity.
upvoted 1 times
...
Delab202
1 year, 11 months ago
Mandatory access control (MAC) Administrators assign security classifications, or labels, to each user and each resource. A user can only access a given resource if their labels are compatible. MAC is challenging to implement correctly but allows very high security. It was developed for military use but is common in other high-security environments
upvoted 1 times
...
Ivanchun
1 year, 11 months ago
Selected Answer: D
MAC control = label
upvoted 1 times
...
saleem4u
2 years, 1 month ago
A means of restricting access to system resources based on the sensitivity (as represented by a label) of the information contained in the system resource and the formal authorization (i.e., clearance) of users to access information of such sensitivity.
upvoted 1 times
...
gststtzxtx
2 years, 1 month ago
B is the right answer
upvoted 1 times
Mann0302
1 year, 11 months ago
I said B too until I thought about DAC
upvoted 1 times
...
franbarpro
2 years, 1 month ago
MAC is based on labels - secret, top secret, etc.
upvoted 4 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...