Chapter 3. Access Control

CompTIA Security+ exam objectives covered in this chapter include the following:

  • 3.1 Identify and apply industry best practices for access control methods.

    • Implicit deny

    • Least privilege

    • Separation of duties

    • Job rotation

  • 3.2 Explain common access control models and the differences between each.

    • MAC

    • DAC

    • Role & Rule based access control

  • 3.3 Organize users and computers into appropriate security groups and roles while distinguishing between appropriate rights and privileges.

  • 3.4 Apply appropriate security controls to file and print resources.

  • 3.5 Compare and implement logical access control methods.

    • ACL

    • Group policies

    • Password policy

    • Domain password policy

    • User names and passwords

    • Time of day restrictions

    • Account expiration

    • Logical tokens ...

Get CompTIA Security+™: Review Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.