Application Security and ASAP Framework
Casual Mode - Take your time!
1 / 13
Correct
0
Incorrect
0
Score
0%
Multiple Choice
The principle of least privilege as it applies to Access control mandates that:
- Group based access control should be implemented to assign permissions to application users
- Consistent authorization checking should be performed on all application pages
- A set of all allowable actions should be defined for each user role and all other's denied
- All failed access authorization requests should be logged to a secure location for review by administrators