Security design principles

1 What is the OSI security architecture?

2 Briefly explain the modification of messages attack with an example.

3 What is the difference between security threats and attacks?

4 What is the difference between passive and active security attacks?

5 Identify the different security attacks prevented by the security mechanisms defined in X.800.

1. List and briefly define the fundamental security design principles.

2. Briefly explain the different types of attack surfaces.

3. Consider an automated teller machine (ATM) in which users provide a personal identification number (PIN) and a card for account access. Give examples of confidentiality, integrity, and availability requirements associated with the system. In each case, indicate the degree of importance of the requirement.

