Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

AAA Framework Quiz

Total questions: 26

Worksheet time: 15mins

Name
Class
Date
1.

A user logs into a new online gaming platform with a username and a strong password. Which core component of the AAA framework is being executed when the system confirms that the user is who they claim to be?

a)

Auditing

b)

Availability

c)
Accounting
d)
Authorization
e)
Authentication
2.

After successfully logging into a network, a student is allowed to read and print documents in the 'Shared Assignments' folder but is blocked from accessing the 'Teacher Records' folder. Which component of the AAA framework is controlling this level of access?

a)

Auditing

b)
Authorization
c)
Accounting
d)

Availability

e)
Authentication
3.

An administrator successfully deletes a user account. The system logs the administrator's username, the time of the deletion, and the specific account that was removed. Which component of the AAA framework is responsible for tracking and logging this activity?

a)
Accounting
b)

Auditing

c)

Accessibility

d)
Authorization
e)
Authentication
4.

Which of the following describes Type 1 Authentication Factors?

a)

Something you know

b)

Something you have

c)

Something you are

d)

Somewhere you are

e)

Something you eat

5.

Which of the following describes Type 2 Authentication Factors?

a)

Something you know

b)

Something you have

c)

Something you are

d)

Somewhere you are

e)

Something you eat

6.

Which of the following would be classified as a Type 1 authentication credential?

a)
Password
b)
Biometric scan
c)
Security token
d)
Smart card
e)
Fingerprint
7.

Biometrics is a term that describes

a)

Something you know

b)

Something you are

c)

Something you have

d)

Something you wear

e)

Something you see

8.

Which is an example of biometrics?

a)

PIN

b)

Smart Phone

c)
Fingerprint recognition
d)

Smart Card

e)

Password

9.

Which is a valid 2FA combination?

a)

Password + Date of Birth

b)

Password + PIN

c)
Password + Security Question
d)

Fingerprint Scan + Facial Recognition

e)
Password + Authenticator App Code
10.

Which of the following is considered a primary benefit of implementing MFA?

a)
Increased login speed
b)
Simplified user experience
c)
Reduced password complexity
d)
Lowered IT support costs
e)
Enhanced security against unauthorized access
11.

What is the main security purpose of high password complexity?

a)
To simplify password management for users.
b)

To make passwords harder to crack.

c)
To reduce the number of password changes required.
d)
To allow for shorter passwords without risk.
e)
To ensure passwords are easy to remember.
12.

Which is NOT a requirement of password complexity?

a)

Should be at least 8 characters in length

b)

Should include at least one special character.

c)

Should contain both uppercase and lowercase letters.

d)

Should contain at least 1 number.

e)

Should contain words that can be found in the dictionary

13.

Why would an administrator restrict password lifespan and password reuse as part of an effective password policy?

a)

To simplify user experience by allowing easy password changes anytime the user desires.

b)
To comply with legal requirements for password storage.
c)
To reduce the workload of the IT department in managing passwords.
d)

To prevent users from cycling through set of potentially compromised passwords.

14.

What does IAM stand for as it relates to the AAA framework?

a)

Individual Availability Management

b)

ID Authorization Mode

c)

Integrity and Accessibility Management

d)

Investigation Auditing and Monitoring

e)
Identity and Access Management
15.

Jill attempts to login to to employee desktop. She fails the first two times but she is successful the third time. All three attempts were recorded as a log entry. Recording what the user does while they are on the system is which part of the AAA framework?

a)
Access Control
b)
Authorization
c)

Availability

d)
Accounting
e)
Authentication
16.

Which statements are true about 2FA and MFA? (Choose 2)

a)

2FA is a form of MFA

b)

MFA requires more than two authentication factors

c)

MFA requires at least two authentication factors

d)

Username + Password is 2FA

e)

MFA is a form of 2FA

17.

A security team is investigating a potential insider threat and needs to prove which specific employee deleted critical files from the server. They carefully review data logs looking for the necessary evidence to identify the correct employee (non-repudiation). This is an example of ________________

a)

Authorization

b)

Authentication

c)

Auditing

d)

Access Management

e)

Availability Controls

18.

A strong password policy should typically avoid which of the following practices?

a)

Prohibiting the use of common dictionary words or personal information (e.g., birthdate).

b)

Requiring a minimum password length of 12 or more characters.

c)

Requiring a mix of at least three character types (upper/lower case, numbers, symbols).

d)

Requiring passwords to be displayed in clear text on the screen during the login process.

e)

Requiring the user to change their password periodically.

19.

Which answer choice is a correct example of Three-Factor Authentication?

a)

A password, a one-time code from a token, and a retinal scan.

b)

A password, a PIN, and a six-digit code from a mobile app.

c)

Two different passwords and a security question.

d)

A PIN, a security question, and a secret phrase.

e)

Facial Recognition, Fingerprint Scan, and voice recognition

20.

Which of these passwords is considered the most complex?

a)

A1b@cD3!# gK

b)

letmeinNOW

c)

qwerty456

d)

abcdEfgHI

e)

passw0rd123

21.

Why is it important to have a different password for each of your online accounts?

a)

It makes it easier to remember your passwords

b)

If one account gets compromised, the others remain secure

c)

It is not important; one strong password is enough for all accounts

d)

To comply with online regulations

e)

So you can separate tasks by different passwords.

22.

Which answer choice is NOT a Type 2 credential in the AAA framework?

a)

Fingerprint Scan

b)
Smart cards
c)

OTP app

d)

Security Token

e)

ID badge with magnetic strip

23.

Match the term to the correct function in Cybersecurity.

a)

Identify users, grant them permissions, and track their activity

1.

AAA Framework

b)

Implementing multiple layers of security.

2.

Defense in Depth

c)

Protecting data from unauthorized access, modification, or inaccessibility

3.

CIA Triad

d)

Reducing the attack surface of the network

4.

Hardening

e)

Giving users only the permissions they need to do their jobs

5.

Principle of Least privilege

24.

Authentication usually happens before authorization.

a)

True

b)

False

25.

Which answers are part of the AAA framework? (Choose 3)

a)

Authentication

b)

Authorization

c)

Accounting

d)

Availability

e)

Administration

26.

RADIUS is used to provide the AAA framework for which type of users?

a)
Guest users
b)
Admin users
c)
Local users
d)
Remote users
e)

New Users