ISC2 CISSP Practice Question
True or False: A system that implements the 'fail securely' principle should default to granting access when authentication mechanisms fail.
False
True
True or False: A system that implements the 'fail securely' principle should default to granting access when authentication mechanisms fail.
False
True
The correct answer is False. The 'fail securely' principle states that when a system fails, it should default to a secure state rather than an insecure one. In practice, this means that when authentication mechanisms fail or encounter errors, the system should deny access rather than grant it. This ensures that security is maintained even during failure conditions.
Failing securely is sometimes referred to as 'fail-safe' or 'fail-closed' and is an important security design principle that helps prevent unauthorized access during exceptional conditions or system failures. If a system were to grant access by default when authentication fails, it would create significant security vulnerabilities that could be exploited by attackers.
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
All IT & Cybersecurity Package plans include the following perks and exams .
Our pricing is simple. Full access to all certifications and exams in each package, for one price.
As many practice tests for as many topics as you want.
Use study mode non-stop, no limits.
Access to our AI assistant, Bash, trained to help you pass your exam.
Track your scores over time in study mode and report cards.
See how you improve over time, and where you need to focus.
Access our store with even bigger discounts than before.
Unlimited access to all performance questions and be prepared for the real thing.
All IT & Cybersecurity Package plans include unlimited access to the following study materials.
Create an account or sign in to access our study materials.