Does this strip "IworkHARD4" access from the database tables? Answer with respect to the database only here, we haven't addressed the back door account yet...

Computer Networking: A Top-Down Approach (7th Edition)
7th Edition
ISBN:9780133594140
Author:James Kurose, Keith Ross
Publisher:James Kurose, Keith Ross
Chapter1: Computer Networks And The Internet
Section: Chapter Questions
Problem R1RQ: What is the difference between a host and an end system? List several different types of end...
icon
Related questions
Question
DAC - Discretionary Access Control
Bob is rather lazy and grants all his data access privileges (including grant) to Joe thinking he can avoid doing his work this way as Joe
is less senior and would be reluctant to complain.
Joe is not happy about this but is also sneaky, Joe hires someone with the moniker "IworkHARD4U" from a gig economy site he got
an email from and sets them up with their own DB id "IworkHARD4" and grants them all the same privileges that Joe has, and
backdoor into the company servers so they can do there work. Sounds legit huh?
One day things go bad, Bob is afraid he will get caught in his work avoidance and quietly runs
REVOKE Bobs_privilege_list ON * FROM Joe RESTRICT;
To hide the trail he created.
Note that this would show up in audit logs, backups, and other traces, but we never said Bob was bright.
Bob notices that things are still changing in his tables and it is not his programs or himself that is changing them.
So does his manager, he is not happy with things and begins HR proceedings against Bob. The head DBA runs
REVOKE Bobs_privilege_list ON * FROM Bob CASCADE;
Does this strip "IworkHARD4" access from the database tables? Answer with respect to the database only here, we haven't
addressed the back door account yet..
O True
O False
Transcribed Image Text:DAC - Discretionary Access Control Bob is rather lazy and grants all his data access privileges (including grant) to Joe thinking he can avoid doing his work this way as Joe is less senior and would be reluctant to complain. Joe is not happy about this but is also sneaky, Joe hires someone with the moniker "IworkHARD4U" from a gig economy site he got an email from and sets them up with their own DB id "IworkHARD4" and grants them all the same privileges that Joe has, and backdoor into the company servers so they can do there work. Sounds legit huh? One day things go bad, Bob is afraid he will get caught in his work avoidance and quietly runs REVOKE Bobs_privilege_list ON * FROM Joe RESTRICT; To hide the trail he created. Note that this would show up in audit logs, backups, and other traces, but we never said Bob was bright. Bob notices that things are still changing in his tables and it is not his programs or himself that is changing them. So does his manager, he is not happy with things and begins HR proceedings against Bob. The head DBA runs REVOKE Bobs_privilege_list ON * FROM Bob CASCADE; Does this strip "IworkHARD4" access from the database tables? Answer with respect to the database only here, we haven't addressed the back door account yet.. O True O False
Expert Solution
trending now

Trending now

This is a popular solution!

steps

Step by step

Solved in 2 steps with 1 images

Blurred answer
Recommended textbooks for you
Computer Networking: A Top-Down Approach (7th Edi…
Computer Networking: A Top-Down Approach (7th Edi…
Computer Engineering
ISBN:
9780133594140
Author:
James Kurose, Keith Ross
Publisher:
PEARSON
Computer Organization and Design MIPS Edition, Fi…
Computer Organization and Design MIPS Edition, Fi…
Computer Engineering
ISBN:
9780124077263
Author:
David A. Patterson, John L. Hennessy
Publisher:
Elsevier Science
Network+ Guide to Networks (MindTap Course List)
Network+ Guide to Networks (MindTap Course List)
Computer Engineering
ISBN:
9781337569330
Author:
Jill West, Tamara Dean, Jean Andrews
Publisher:
Cengage Learning
Concepts of Database Management
Concepts of Database Management
Computer Engineering
ISBN:
9781337093422
Author:
Joy L. Starks, Philip J. Pratt, Mary Z. Last
Publisher:
Cengage Learning
Prelude to Programming
Prelude to Programming
Computer Engineering
ISBN:
9780133750423
Author:
VENIT, Stewart
Publisher:
Pearson Education
Sc Business Data Communications and Networking, T…
Sc Business Data Communications and Networking, T…
Computer Engineering
ISBN:
9781119368830
Author:
FITZGERALD
Publisher:
WILEY