Authentication Protocols Flashcards

1
Q

Explain PAP

A

Password Authentication Protocol

Username & Password sent in clear text.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Explain CHAP

A
Challenge-Handshake Authentication Protocol
Shared password
Server Stores passwords in plain text
3 way handshake:
Server sends challenge (nonce)
Client hashes challenge and password
Server compares hash
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Explain 802.1X

A
Port Based Network Access Control
Includes EAP
Layer 2
3 Major Roles are:
Supplicant: an 802.1x client
Authentication Server (AS)
Authenticator: Access Point
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Explain EAP

A

Many types:
EAP-MD5: Weakest
EAP-FAST: Cisco Proprietary, replaces LEAP, uses Protected Access Credential (PAC) as shared key.
EAP-TLS: Uses PKI, needs client and server side certificate
EAP-TTLS: Does not need client side certificate
LEAP: Cisco Proprietary, weak.
PEAP: Competitor to EAP-TTLS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Explain Radius

A

AAA system
Open Protocol
Uses UDP
Only encrypts password
Combines authentication, authorization, and auditing process
Client sends credentials to Access Server
Access Server sends credentials to Radius Server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Explain TACACS

A

Combines its authentication, authorization, and auditing process

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Explain XTACACS

A

Separates its authentication, authorization, and auditing process

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Explain TACACS+

A

XTACACS with two factor authentication
Uses TCP
Server/Client model
Encrypts all data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Explain Diameter

A

Build upon Radius
AAA System
Peer based system, not server/client
Used to accommodate VoIP, Mobile IP Ethernet of PPP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly