[Cisspstudy] access controls

Terese Matchim TMatchim at CalSTRS.com
Thu Oct 29 09:38:33 EDT 2009


You use a firewalls and routers in a DMZ (they are preventative in nature) they stop users who do not have rights to get into your network.  Just like a lock would stop a person from getting your home.  Firewalls/Routers are a technical control (hardware).   A lock would be considered a physical control.

Break down your controls:
Administrative would be a policy.
Detective would be logging or CCTV.

Hope this helps

________________________________
From: cisspstudy-bounces at cccure.org [mailto:cisspstudy-bounces at cccure.org] On Behalf Of Gaurav C
Sent: Thursday, October 29, 2009 6:20 AM
To: cisspstudy at cccure.org
Subject: [Cisspstudy] access controls

I came across a questions ie.
Question: 503
Which of the following pairings uses technology to enforce access control policies?

    *  Preventive/Administrative
    * >Preventive/Technical
    *  Preventive/Physical
    *  Detective/Administrative

I have marked answer Preventive/Administrative considering that since polices are dealt in Administrative part so Preventive/Administrative is the right answer

But answer that is give is Preventive/Technical can anyone explain more about it





-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://cccure.org/pipermail/cisspstudy_cccure.org/attachments/20091029/13c6775d/attachment-0001.html>


More information about the cisspstudy mailing list