Lab #3

Submitted by: Submitted by

Views: 409

Words: 646

Pages: 3

Category: Science and Technology

Date Submitted: 03/26/2014 05:42 PM

Report This Essay

Lab #3 – Data Classification Matrix Assessment Worksheet

Data Classification Standard Matrix

Lab #3 – Assessment Worksheet

Identify & Classify Data for Access Control Requirements

1. What is the Data Classification Standard used in the U.S. Department of Defense (DoD)/Military?

1. Controlled Unclassified Information (CUI) – At one point there were over 100 designations in use for unclassified information. President G.W. Bush issued a Presidential memorandum in 2008 to consolidate the various designations into one. The memorandum was rescinded in 2010.

2. Unclassified – the default designation for information that can be released to persons without a clearance.

3. Confidential – the lowest classification level. It is defined as information that would “damage” national security if disclosed.

4. Secret – the second highest classification level. It is defined as information that would “seriously damage” national security if disclosed.

5. Top Secret – the highest classification level. It is defined as information that would cause “exceptionally grave damage” to national security if disclosed.

2. Describe one way to help prevent unauthorized users from logging onto another person’s user account and accessing his/her data.

Requiring two-stage authentication is one way to help prevent unauthorized users from logging onto another person’s user account.

3. What permissions are necessary to allow an Active Directory Group called

AD_group to read and write files in a sensitive directory such as C:\ERPdocuments\HRfiles?

You would grant the group read and write permission to the file.

4. How would you apply the permissions (ACLs) stated above (M, R X) to the AD_Group on C:\ERPdocuments\HRfiles from the command prompt using built-in Windows tools?

From the command prompt type:

cacls C:\ERPdocuments\HRfiles AD_Group:M,RX

5. When adding permissions to a directory in an Active Directory Domain, would you prefer to add Groups or...