Which model determines the access control taken by any possessor of an object to decide the access control of a subject on that object?

Study for the EC-Council Network Defense Essentials Exam with flashcards and multiple-choice questions. Each question includes detailed explanations and hints to boost your preparation. Be confident and ready to succeed!

Multiple Choice

Which model determines the access control taken by any possessor of an object to decide the access control of a subject on that object?

Explanation:
Discretionary access control centers on the owner's ability to decide who can access a resource and with what rights. The possessor of the object can grant or revoke permissions and even pass access to others, typically using mechanisms like access control lists or capability tokens. This contrasts with mandatory access control, where a system-wide policy based on security labels governs access; role-based access control, where access is tied to a user’s role; and rule-based control, where access follows predefined rules. So the scenario described—access decisions made by the object’s possessor—fits Discretionary Access Control best.

Discretionary access control centers on the owner's ability to decide who can access a resource and with what rights. The possessor of the object can grant or revoke permissions and even pass access to others, typically using mechanisms like access control lists or capability tokens. This contrasts with mandatory access control, where a system-wide policy based on security labels governs access; role-based access control, where access is tied to a user’s role; and rule-based control, where access follows predefined rules. So the scenario described—access decisions made by the object’s possessor—fits Discretionary Access Control best.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy