CCSP Flashcards
Cloud Service Category Types
- IaaS – Infrastructure as a Service
- PaaS – Platform as a Service
- SaaS – Software as a Service
CSA
Cloud Service Auditor (CSA) Operations Manager Deployment Manager Service Manager Business Manager
CSB
Cloud Service Broker (CSB) Customer Support and Care Representative Inter-cloud provider Security and Risk Manager Network Provider
CSP
Cloud Service Provider (CSP) – Provides cloud environment
CSC
Cloud Service Customer (CSC) o Service User o Service Administrator o Service business Manager o Service Integrator
CSN
Cloud Service Partner (CSN)
Cloud Computing Characteristics
- Broad Network Access
- On-demand Self-service
- Multi-tenant Capability (client data isolation)
- Resource Pooling
- Rapid Elasticity and Scalability
- Measured service
Infrastructural Building Block
Compute o Physical Hosts o Virtual Machines Network o Physical Transport o Virtual LANs – data isolation Storage o Physical Volumes o Shared storage pools Services o Backend database structure – clusters and redundancy
SAML
Security Assertion Mark-up Language - used for active directory encryption (tickets)
Cryptographic Erase (CE)
The process of knowingly erasing the media that stored encryption/decryption keys, it is effectively sanitized because there is no way to decrypt the data without the keys.
802.1x
A security standard that supports RADIUS authentication server, VPN concentrators, Network switches, and Wireless Access Points.
Rogue Virtual Machine
A virtual machine that’s not being controlled or managed, usually by users either knowingly or unknowingly
VLAN Hopping
VLAN hopping to other VLANs, usually maliciously, as in a VLAN Hopping Attack
Asset Hardening
- Patching
- Disabling unnecessary software
- Ensuring firewall/antivirus installed
for VMs, always harden the hypervisor host and guest OS
Hypervisor
A hypervisor is a virtual machine monitor (VMM) that creates and runs virtual machines. A computer on which a hypervisor runs is called a host machine, and each virtual machine is called a guest machine.