Question of the Day

The Crucial Exams Question of the Day (QOTD) is a daily social media post featuring a quick, simplified quiz question for one of the many certifications we cover.

Which access control model enforces 'no read up' and uses security clearances and labels?

  1. Bell-LaPadula
    Correct
  2. Biba
  3. Clark-Wilson
  4. Discretionary access control

After confirming a security breach, which incident response step should typically occur next?

  1. Containment
    Correct
  2. Recovery
  3. Eradication
  4. Preparation

Which tool measures DC voltages from a PC power supply?

  1. Digital multimeter
    Correct
  2. POST diagnostic card
  3. Loopback adapter
  4. Cable continuity tester

Which key-exchange provides forward secrecy for TLS sessions?

  1. Ephemeral Diffie-Hellman
    Correct
  2. Static RSA key exchange
  3. Pre-shared symmetric key
  4. AES block cipher

Which access model lets resource owners decide who may access their objects?

  1. Mandatory access control
  2. Role-based access control
  3. Discretionary access control
    Correct
  4. Attribute-based access control

Which primitive provides integrity but requires no secret key?

  1. Symmetric block cipher
  2. Message authentication code
  3. Asymmetric digital signature
  4. Cryptographic hash function
    Correct

A PC shows IP 169.254.x.x after reboot. Most likely cause?

  1. DHCP server unreachable
    Correct
  2. DNS server failure
  3. Subnet mask mismatch
  4. Static IP misconfigured

What is the main purpose of a network DMZ?

  1. Isolate public servers from LAN
    Correct
  2. Provide remote VPN access
  3. Encrypt traffic between hosts
  4. Centralize user authentication

How should you grant EC2 temporary S3 access without storing long-term keys?

  1. Attach an IAM role (instance profile) to EC2
    Correct
  2. Embed IAM user access keys in app config
  3. Use presigned S3 URLs per object request
  4. Run a local STS server for token exchange

Which GCP identity should a VM use to call other GCP APIs with least privilege?

  1. User's Google account
  2. OAuth2 client ID
  3. Service account
    Correct
  4. Project-wide API key

Which control confines an application to a restricted runtime environment?

  1. Sandboxing
    Correct
  2. Full disk encryption
  3. Intrusion detection
  4. Network segmentation

Which process converts data to a fixed-size output that cannot be reversed?

  1. Symmetric encryption
  2. Asymmetric encryption
  3. Cryptographic hashing
    Correct
  4. Base64 encoding
Showing 1-25 of 157 published questions
Don't miss a beat — follow us on socials for the Question of the Day!
Follow us on...