2.2: User IDs and Passwords Flashcards

1
Q

What are user IDs and passwords for

A

Common means to authenticate themselves to a resource.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Electronic Password vaulting

A

Use by users to store their passwords.

Example : Password Safe and KeePass

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

user account provisioning

A

user account provisioning refers to the management of user rights and privileges

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Can a password created by an admin be sent to the user by email?

A

In no circumstance should a password be sent via email.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Data sensitivity

A

The value of the data protected by access controls should be a factor in determining how users accounts are provisioned.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Risks with user IDs and Passwords

A
  • Eavesdropping
  • Phishing
  • Finding a password written down
  • Finding a stored password
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Multfactor Authentication

A

Require a user ID and password, but also the user have something in their possession, or a biometric that is used to form a part of the authentication.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Technologies used for multifactor authentication

A
  • Tokens,
  • Soft tokens
  • Sms tokens,
  • Smart cards,
  • Digital certificates, biometrics.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Digital Certificates

A

An electronic document that uses a digital signature signature to bind a public encryption key with a user’s identity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Biometrics

A

Several technologies that measure a physical characteristic of a user.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Example of biometric

A
  • Fingerprint,
  • Handprint - a scanner designed to measure the geometry of a person’s hand.
  • Palm vein
  • Voice recognition
  • Iris scan
  • Facial scan
  • Handwriting
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Biometric measurements

A
  • False reject rate : Rate at which valid subjects are rejected.
  • False accept rate: Rate at which invalid subjects are accepted.
  • Crossover error rate : This is the point at which the false reject rate equals the false accept rate.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

When does a false reject rate occurs

A

This occurs when the biometric system has too of a small margin error

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

When does a false accept rate occur

A

This occurs when the biometric has too of a large margin of error

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Biometric Usability issues

A
  • Sanitary

* Privacy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Does fingerprint scanner record the user’s actual fingerprint?

A

Not it does not, instead it records a computed hash of the intersections in the lines in the user’s fingerprint,

17
Q

What measurement of a subject are involved with biomertics

A

The measurement of the subject’s physical characteristics.