Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- http://searchsecurity.com/quiz/Quiz-Identity-management-and-access-control-in-the-cloud
- YOUR SCORE: 5 out of 5 - Read the answers to the quiz below. Get your CPE Credit
- QUESTION 1
- What is the Service Provisioning Markup Language used for?
- Starting up network services on a cloud system
- Managing (setting up, amending and revoking) user or system access entitlements or data
- Exchanging authentication and authorization data
- Only correcting entitlements
- Defining the language used to describe how a system is setup
- YOUR ANSWER - Managing (setting up, amending and revoking) user or system access entitlements or data
- CORRECT ANSWER - SPML is designed to allow automation of user or system access and entitlements in heterogeneous environments, in order to prevent lock-in to proprietary products.
- MORE INFORMATION:
- Read more about SPML and identity management in the cloud.
- QUESTION 2
- What is the Security Assertion Markup Language used for?
- Asserting ownership of a resource
- Managing (setting up, amending and revoking) user or system access entitlements or data
- Exchanging authentication and authorization data
- Defining the security attributes of a system to inquirers
- Writing identity provider programs
- YOUR ANSWER - Exchanging authentication and authorization data
- CORRECT ANSWER - SAML is an XML framework for exchanging authentication and authorization information.
- MORE INFORMATION:
- Check out the top cloud provisioning and access management considerations.
- QUESTION 3
- What is XACML used for?
- Enforcing permissions for resources
- Exchanging authentication data
- Encrypting authorization information
- Creating accounts (Account Creation Meta Language)
- Describing access control policies and how to interpret them
- YOUR ANSWER - Describing access control policies and how to interpret them
- CORRECT ANSWER - eXtensible Access Control Markup Language (XACML) is an XML schema for representing authorization and entitlement policies (i.e., access control policies), and contextual meaning (i.e., how to interpret them).
- MORE INFORMATION:
- Get tips on maintaining security after a cloud computing implementation.
- QUESTION 4
- Most cloud service providers (CSPs) support the following:
- Proprietary API
- Proprietary API, SAML
- Proprietary API, SAML, SPML
- Proprietary API, SAML, SPML, XACML
- SAML, SPML, XACML
- YOUR ANSWER - Proprietary API, SAML
- CORRECT ANSWER - Currently, most CSPs support their own APIs and a version of SAML. Most do not support SPML or XACML at this time.
- MORE INFORMATION:
- For more information: Video interview: Google Apps security director discusses cloud data security strategies.
- QUESTION 5
- Dynamic user provisioning includes everything except:
- Evaluating enterprise provisioning tool capabilities
- Mapping entitlements between a CSP and the enterprise
- Writing custom connectors
- Managing users with the CSP management interface
- Working with CSP to identify supported mechanisms
- YOUR ANSWER - Managing users with the CSP management interface
- CORRECT ANSWER - All other tasks are part of the process. The whole purpose of dynamic provisioning would be to alleviate the need for D.
- MORE INFORMATION:
- Learn 10 key provisions in cloud computing contracts.
- MORE INFORMATION:
- Get tips on maintaining security after a cloud computing implementation.
- QUESTION 4
- Most cloud service providers (CSPs) support the following:
- Proprietary API
- Proprietary API, SAML
- Proprietary API, SAML, SPML
- Proprietary API, SAML, SPML, XACML
- SAML, SPML, XACML
- YOUR ANSWER - Proprietary API, SAML, SPML, XACML
- CORRECT ANSWER - Proprietary API, SAML Currently, most CSPs support their own APIs and a version of SAML. Most do not support SPML or XACML at this time.
- MORE INFORMATION:
- For more information: Video interview: Google Apps security director discusses cloud data security strategies.
- QUESTION 5
- Dynamic user provisioning includes everything except:
- Evaluating enterprise provisioning tool capabilities
- Mapping entitlements between a CSP and the enterprise
- Writing custom connectors
- Managing users with the CSP management interface
- Working with CSP to identify supported mechanisms
- YOUR ANSWER - Evaluating enterprise provisioning tool capabilities
- CORRECT ANSWER - Managing users with the CSP management interface All other tasks are part of the process. The whole purpose of dynamic provisioning would be to alleviate the need for D.
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement