CISSP Official Practice Tests by Mike Chapple, David Seidl

(chelsyfait) #1

112 Chapter 5 ■ dentity and Access Management (Domain 5)I



  1. Susan is working to improve the strength of her organization’s passwords by changing the
    password policy. The password system that she is using allows uppercase and lowercase
    letters as well as numbers but no other characters. How much additional complexity does
    adding a single character to the minimum length of passwords for her organization create?
    A. 2 6 times more complex
    B. 6 2 times more complex
    C. 3 6 times more complex
    D. 2 ^62 times more complex

  2. Which pair of the following factors is key for user acceptance of biometric identification
    systems?
    A. The FAR
    B. The throughput rate and the time required to enroll
    C. The CER and the ERR
    D. How often users must reenroll and the reference profile requirements


Alex is in charge of SAML integration with a major third-party partner that provides a
variety of business productivity services for his organization. Use the following diagram
and your knowledge of SAML integrations and security architecture design to answer
questions 43–45.

Home
Organization
Identity
Provider


  1. User
    attempts
    to access
    application

  2. Home
    organization
    authenticates
    user and
    sends SAML
    response

  3. SAML
    response
    sent to
    browser Web
    Browser

  4. Browser
    sends
    SAML
    response
    to third
    party

  5. Redirect
    to SSO
    URL


SAML
Integrated
Third-Party
Service

User


  1. SAML
    response
    verified, user
    logged into
    third-party
    application

  2. Browser
    accesses
    SSO URL

Free download pdf