Ch 12 Key Terms Flashcards
validate credentials as genuine
authentication
authorization
accounting
identification
authentication
a hierarchy based on the labels; i.e. top secret has a higher level than secret
levels
RBAC
DAC
labels
levels
provide file system security for protecting files managed by the OS
kerberos
LDAP
ACL
Radius
ACL
the process of recognizing and distinguishing the user from any other user
authorization
authentication
identification
accounting
identification
most restrictive access control; user has no freedom to set any controls or distribute access
RBAC
ABAC
MAC
DAC
MAC
right given to access specific resources
access
authorization
identification
authentication
access
an opportunity to audit employees’ activities while they are on vacation
separation of duties
job rotations
mandatory vacations
Permission auditing and review
mandatory vacations
the process of periodically revalidating a user’s account, access control and membership role
separation of duties
mandatory vacations
Permission auditing and review
recertification
recertification
using MAC model, every entity is an object and is assigned a classification label
labels
levels
DAC
RBAC
labels
individuals are periodically moved from one job responsibility to another
separation of duties
job rotation
mandatory vacations
recertification
job rotation
providing a framework for controlling access to computer resources
AOC
AAA
ACC
AAC
AAA
granting permission to take an action; permission granted for admittance
accounting
identification
authentication
authorization
authorization
used for connecting to remote networks; provides port security (802.1x)
Kerboros
LDAP
Radius
ACL
Radius
actions to be taken when an employee leaves an enterprise
least privilege
employee offboarding
employee onboarding
recertification
employee offboarding
least restrictive; every object has an owner who has total control over that object
MAC
access control model
RBAC
DAC
DAC