13 - Security Services Flashcards
What is a Whaling attack?
A Phishing attack targeting high-profile individuals
What is a Pharming attack?
An attack that involves compromising the services that direct users towards a well-known or trusted website e.g. DNS service
What is a Watering hole attack?
An attacker determines which users frequently visit a site, then compromises a site and deposits malware there, only targeting those specific users
What is a AAA server?
Authentication
Authorization
Accounting
Provide a centralized and standardized location for these functions for switches and routers
What is Cisco ISE?
Identity Services Engine
Platform that Cisco implements its AAA services in
What is TACAS+?
Cisco proprietary protocol that separates each of the AAA functions
What port does TACAS+ communicate over?
Encrypted over TCP port 49
What is RADIUS?
Standards based protocols that combines Authentication and Authorization into a single resource
What port does RADIUS communicate over?
UDP ports 1812 and 1813(accounting)
Not completely encrypted
What is a NAD?
Network Access Device
What device usually is considered a NAD/NAS?
A Switch
What is a switch usually referred to in the AAA client role?
A NAD
What 3 basic elements should an effective security program have?
- User awareness
- User training
- Physical access control
What is the issue with some older style IOS passwords?
They create a security exposure because the passwords existed in the configuration file as clear text
What is the command to encrypt passwords normally stored as clear text?
Global command:
service password-encryption