Access Control and Identity Management Flashcards

1
Q

What is EAL?

A

Evaluation Assurance Level

In combination with CC (Common Criteria)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

When using hard drive encryption, why is automatic unlock not ideal?

A

Credentials are cached on the computer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is an HSM?

A

Hardware Security Module

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is SCADA?

A

Supervisory Control and Data Aquisition

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is a TCP wrapper?

A

Intercepts requests to determine whether service is authorised to execute, should be used in conjunction with firewall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is a TLS/SSL wrapper?

A

Intercepts requests to determine whether service is authorised to execute based on TLS/SSL session

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is AAA?

A

Authentication
Authorisation
Accounting (auditing)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What port does RADIUS use?

A

UDP
1812/1645 (Authentication)
1813/1646 (Accounting)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What port does TACACS+ use?

A

TCP

49

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is RADIUS?

A

Remote Authentication Dial-in User Service

Encrypts password credentials

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is TACACS?

A

Terminal Access Controller Access Control System

Encrypts entire packet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is the KDC in Kerberos?

A
Key Distribution Center
Contains TGS (Ticket Granting Service)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What kind of encryption does Kerberos use?

A

Symmetrical Encryption

Same key used to encrypt and decrypt

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What port does Kerberos use?

A

88

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is X.500?

A

A protocol used by LDAP

Encrypted or unencrypted authentication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What port is used by LDAP?

A

389

17
Q

What port is used by secure LDAP?

A

636

uses TLS/SSL

18
Q

What is SAML?

A

Security Association Markup Language

SSO

19
Q

How does SAML concept work?

A

Principal authenticates with Identity Provider who passes credentials to service provider(s)

20
Q

What is TOTP?

A

Time-based One Time Password

21
Q

What is FRR vs FAR for authentication?

A

False Rejection Rate (Type 1)
False Acceptance Rate (Type 2)
Cross Error Rate - point at which both are equal

22
Q

What is HOTP?

A

Hash-based One Time Password

based on events

23
Q

What is PAP?

A

Password Authentication Protocol

Type of PPP

24
Q

What is CHAP?

A

Challenge Handshake Authentication Protocol

Type of PPP