What is a break-glass account and when is it used?

Study for the User Account Management Test. Enhance your skills with flashcards and multiple choice questions, each with hints and explanations. Be prepared for success!

Multiple Choice

What is a break-glass account and when is it used?

Explanation:
Break-glass access is an emergency, highly privileged access to systems that is only used when normal access paths aren’t available. It’s designed to let you act quickly to restore or maintain critical services during outages or severe incidents, but it has stringent safeguards to prevent abuse. Those safeguards typically include dual control (two authorized people must approve or be present), strict logging and auditing, time-bound or session-limited use, and immediate revocation after the task is done. This combination—emergency need plus tight controls—captures the essence of break-glass. So the best answer describes an emergency highly privileged account with strict controls that’s used during outages and requires dual control. The other options describe standard or service or guest accounts, which do not fit the emergency, tightly controlled access scenario.

Break-glass access is an emergency, highly privileged access to systems that is only used when normal access paths aren’t available. It’s designed to let you act quickly to restore or maintain critical services during outages or severe incidents, but it has stringent safeguards to prevent abuse. Those safeguards typically include dual control (two authorized people must approve or be present), strict logging and auditing, time-bound or session-limited use, and immediate revocation after the task is done. This combination—emergency need plus tight controls—captures the essence of break-glass.

So the best answer describes an emergency highly privileged account with strict controls that’s used during outages and requires dual control. The other options describe standard or service or guest accounts, which do not fit the emergency, tightly controlled access scenario.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy