4.2 Flashcards
What does AAA stand for?
Authorization, Authentication and Accounting
What are the AAA framework steps to get access to a network device?
- Identification(usually the username/who we are)
- Authentication(usually the password/prove who we are)
- Authorization(based on the identification and authentication, what access do we have?)
- Accounting(resources used: Login time, data sent and received, logout time)
What does RADIUS stand for?
Remote Authentication Dial-in User Service
What does RADIUS do?
Its one of more common AAA protocols
Whats an example of RADIUS?
centralize authentication for users like routers, switches, firewalls, remote VPN access since RADIUS services are available on almost any server operating system.
What does TACACS stand for?
Terminal Access Controller Access-Control System
What does TACACS do?
It’s an alternative to RADIUS aremote authentication protocol created to control access to dial-up lines to APRANET.
Whats XTACACS?
(Extended TACACS) It’s an additional support for accounting and auditing.
Whats TACACS+?
Latest version of TACACS which offers more authentication requests and response codes.
What are Kerberos?
They are a network authentication protocol which only authenticates once and once it’s trusted by the entire system, they wont be a need to re-authenticate to everything.
What does SSO stand for?
Single Sign-On and it’s part of the kerberos which authenticates one time. This means no constant username and password input to save time. It only works with Kerberos protocols, but not everything is kerberos-friendly.
What is LDAP used for?
It’s the protocol for reading and writing directories over an IP network(an organized set of records, like a phone directory(LDAP uses tcp/389 and udp/389)
Whats the use of local authentication?
Credentials are stored on the local device(doesnt use a centralized database). Most devices include an initial account. Its difficult to scale local accounts(no centralized administration so everything must be added or changed on all devices) but its useful as a backup.
What are certificates used for?
They are used in certificate-based authentications like smart cards(private key is on the card)
Whats a PIV card?
(Personal Identity Verification card) It’s a US Federal Government smart card with picture and identification info.