exam questions

Exam 350-401 All Questions

View all questions & answers for the 350-401 exam

Exam 350-401 topic 1 question 523 discussion

Actual exam question from Cisco's 350-401
Question #: 523
Topic #: 1
[All 350-401 Questions]

Which design principle states that a user has no access by default to any resource, and unless a resource is explicitly granted, it should be denied?

  • A. least privilege
  • B. fail-safe defaults
  • C. economy of mechanism
  • D. complete mediation
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Joseph123
Highly Voted 2 years, 8 months ago
The Principle of Fail-Safe Defaults states that, unless a subject is given explicit access to an object, it should be denied access to that object
upvoted 11 times
Entivo
1 year, 10 months ago
Fail safe defaults is a design philosophy where IF any device or process or system fails for whatsoever reason it will DEFAULT TO SAFE outcome. Principle of Least Privilege means applying a zero trust mindset and providing ONLY the required access that people need to do their jobs and nothing else.
upvoted 2 times
...
...
Beehurls
Most Recent 5 months, 4 weeks ago
Selected Answer: B
Answer is B, but Cisco has no mention of fail-safe defaults in any Cisco doc that I can find. All of the information comes from 3rd party cyber security sites. So I'm not sure why they would ask this.
upvoted 3 times
...
ebulating
9 months, 1 week ago
Least privilege is about giving users the minimum possible right to do their job. Fail-safe defaults is more of system design rule.
upvoted 1 times
...
05b11e1
9 months, 3 weeks ago
Selected Answer: A
I think in cisco world it's called least privilege. cant find any document for fail-safe defaults
upvoted 1 times
...
[Removed]
11 months, 3 weeks ago
Selected Answer: B
B is correct
upvoted 1 times
...
adc0125
1 year, 3 months ago
It's A by far. The principle of least privilege is about restricting access rights to the minimum necessary, while fail-safe defaults is about ensuring that a system defaults to a secure state in the face of errors or unexpected conditions.
upvoted 1 times
...
CKL_SG
1 year, 10 months ago
Selected Answer: B
Clearly stated in below url The principle of least privilege states that a subject should be given only those privileges that it needs in order to complete its task. The principle of fail-safe defaults states that, unless a subject is given explicit access to an object, it should be denied access to that object. https://www.informit.com/articles/article.aspx?p=30487&seqNum=2
upvoted 4 times
...
teikitiz
1 year, 10 months ago
Selected Answer: B
https://medium.com/strike-sh/rest-security-design-principles-434bd6ee57ea Fail-Safe Defaults A user’s default access level to any resource in the system should be “denied” unless they have been granted a “permit” explicitly.
upvoted 2 times
...
Entivo
1 year, 11 months ago
Selected Answer: A
The answer is 100% A - admin please change.
upvoted 1 times
...
Clauster
2 years, 1 month ago
Selected Answer: B
Answer is B No more arguing about this. https://www.informit.com/articles/article.aspx?p=30487&seqNum=2#:~:text=The%20principle%20of%20fail-safe%20defaults%20states%20that%2C%20unless,is%20not%20explicitly%20granted%2C%20it%20should%20be%20denied.
upvoted 3 times
...
Asymptote
2 years, 4 months ago
Selected Answer: B
Least privilege means you can still access resources but with limited permission. abviously A is not the answer. B is the correct one.
upvoted 2 times
Asymptote
2 years, 4 months ago
obviously tyop .....
upvoted 1 times
...
Entivo
1 year, 11 months ago
Wrong, The Principle of Least Privilege means that ALL access to denied UNLESS it is needed. Your answer is completely wrong.
upvoted 2 times
...
...
civan
2 years, 4 months ago
Selected Answer: B
While both A and B appear correct, the key words in the question seem to more closely match option B 'fail safe defaults' according to the CISA website https://www.cisa.gov/uscert/bsi/articles/knowledge/principles/failing-securely https://www.cisa.gov/uscert/bsi/articles/knowledge/principles/least-privilege
upvoted 3 times
...
poy4242
2 years, 4 months ago
Selected Answer: A
it's from Zero-trust model, the least-privilege
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago