Answers to Review Questions

1. C. Role-based access control (RBAC) is best suited for environments with a high rate of employee turnover because access is defined against static job descriptions rather than transitive user accounts (DAC and ACL) or assigned clearances (MAC).

2. B. Two-factor authentication is always more secure than any single factor of authentication.

3. A. Kerberos is a third-party authentication service; thus it provides authentication protection. Kerberos can’t be used to encrypt files, secure nonauthentication communications, or protect data transfer.

4. B. A one-time password is always the strongest form of password. A static password is always the weakest form of password. Passwords with more than eight characters and ...

Get CompTIA Security+™: Review Guide, Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.