Architectural and Design Security Flashcards
7 cards from real CBSE practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Architectural and Design Security flashcards as text
In a permissioned blockchain architecture, which access control model is most appropriate for enforcing role-based restrictions on transaction submission?
Answer: Role-Based Access Control (RBAC)
RBAC maps organizational roles directly to permitted transaction types, aligning with the structured membership model of permissioned blockchains.
What cryptographic mechanism enables a node to prove it possesses a valid credential without revealing the credential itself during network authentication?
Answer: Zero-knowledge proof
Zero-knowledge proofs let a prover convince a verifier of a statement's truth without disclosing the underlying secret.
A blockchain design uses a separate chain for high-frequency micropayments that periodically settles to the main chain. This pattern is best described as:
Answer: Sidechain
A sidechain runs independently with its own consensus and periodically anchors or transfers assets back to the main chain.
Which threat does the 'nothing-at-stake' problem primarily affect in blockchain consensus design?
Answer: Proof-of-Stake validator equivocation
In early Proof-of-Stake designs, validators faced no cost for signing multiple conflicting forks, enabling double-spend attacks without economic penalty.
When designing a multi-signature wallet contract, what is the primary security risk of setting the required-signature threshold too low?
Answer: Reduced resistance to key compromise enabling unauthorized fund transfer
A low threshold means compromising fewer keys is sufficient for an attacker to authorize transactions unilaterally.
Which architectural principle is violated when a smart contract stores all application state on-chain, including data that never participates in consensus logic?
Answer: Separation of concerns
Separation of concerns is violated because on-chain storage should be limited to data requiring trustless consensus, not auxiliary application state.
In Hyperledger Fabric, which component is responsible for ordering transactions into blocks before distributing them to peers?
Answer: Ordering service (orderer)
The ordering service collects endorsed transactions, sequences them deterministically, and cuts blocks for delivery to all channel peers.