Ch. 3 - Vocab Flashcards

1
Q

biometric

A

attempts to authenticate an individual based on their unique physical characteristics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

challenge-response protocol

A

computer generates a challenge, while the smart token generates a response

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

claimant

A

party to be authenticated

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

credential

A

data structure that binds an identity to a token possessed by a subscriber

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

credential service provider

A

provides an electronic credential to the subscriber

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

dynamic biometric

A

characteristics based on what you do, these includes voice and signature

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

enroll

A

extraction of a set of biometric features that can be stored as a set of number

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

hashed password

A

password and salt serve as inputs to a hashing algorithm to produce a hash code

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

identification

A

individual uses a biometric sensor but presents no additional information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

memory card

A

can store but not process data, usually has a magnetic strip in the back

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

nonce

A

an arbitrary number that can be used just once in a cryptographic communication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

password

A

a memorized secret, typically a string of characters, usually used to confirm the identity of a user

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

rainbow table

A

a table consisting a list of hash values corresponding to a large number possible passwords with each salt value

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

registration authority

A

trusted entity that vouches for the identity of an applicant to a CSP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

relying party

A

the party who uses authenticated information provided by the verifier to make access control decisions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

salt

A

a random value combined with a password to generate a hash, making it more difficult to apply a dictionary attack

17
Q

shadow password file

A

a separate place for hashed password from user IDs, needs root permissions to access this

18
Q

smart card

A

a physical electronic authorization device, used to control access to a resource

19
Q

static biometric

A

characteristics based on who you are; these include the hand, face, finger, retina, and iris

20
Q

subscriber

A

is provided a credential by the CSP

21
Q

token

A

objects that a user possesses for the purpose of user authentication

22
Q

user authentication

A

user’s identity is verified and this identity is used to make access control decisions

23
Q

verification

A

user enters a PIN and uses a biometric sensor

24
Q

verifier

A

party verifying that identity