Question
An enterprise enforces an access control mechanism using the Bell-LaPadulla model with categories. The security levels ordered from highest to lowest are: TOP SECRET, SECRET,
An enterprise enforces an access control mechanism using the Bell-LaPadulla model with categories. The security levels ordered from highest to lowest are: TOP SECRET, SECRET, CONFIDENTIAL, and UNCLASSIFIED. The available categories are: Teller, Loan Officer, Branch Manager, Auditor, Compliance Officer, and Manager. For each of the following attempts, determine whether read/write permissions are granted or not. Note: assume that discretionary access controls allow anyone access. a) Alice, cleared for (TOP SECRET, {Loan Officer, Auditor}), wants to read/write a document classified (SECRET, {Auditor}). b) Bob, cleared for (SECRET, {Branch Manager }), wants to read/write a document classified (CONFIDENTIAL, {Branch Manager, Compliance Officer }). c) Charles, cleared for (SECRET, {Teller, Compliance Officer}), wants to read/write a document classified (CONFIDENTIAL, {Teller, Compliance Officer, Auditor }). d) Dan, who has no clearances (UNCLASSIFIED), wants to read/write a document classified (UNCLASSIFIED, {Teller}). e) Evans, cleared for (CONFIDENTIAL, {Compliance Officer, Manager}), wants to read/write a document classified (CONFIDENTIAL, {Compliance Officer, Manager})
Step by Step Solution
There are 3 Steps involved in it
Step: 1
Get Instant Access to Expert-Tailored Solutions
See step-by-step solutions with expert insights and AI powered tools for academic success
Step: 2
Step: 3
Ace Your Homework with AI
Get the answers you need in no time with our AI-driven, step-by-step assistance
Get Started