Chapter 7 Remote access Flashcards
Wireless network encryption standard.
802.11i
vendor-independent standard for connecting two nodes according to the port
802.1x
login, access privileges, track account usage
AAA
secure encryption, better than TKIP
AES
IPsec; provides IP packet authentication through public keys
AH (authentication header)
Kerberos; a process to initially authenticate a client
AS (authentication service)
one key to encrypt, another to decrypt
asymmetric encryption
rules to authenticate clients
authentication protocols
Kerberos: user’s time stamp is encrypted with a session key
authenticator
organization that maintains and issues certificates, part of public-key infrastructure
CA (certificate authority)
random string of text to another computer to initiate authentication
challenge
PPP authentication process
CHAP (challenge handshake authentication protocol)
3-tenet security standard for protecting data
CIA triad (confidentiality, integrity, availability)
input of 2 different data sets resulting in the same hash value
collision
services shared by many organizations, but are not public
community cloud
a digital document that contains verifiable information about the user and their public key
digital certificate
WinServer 2008 service; automatically authenticates remote users to a Domain and to corporate networks
DirectAccess
forging name server records
DNS spoofing
the authenticator initiates the authentication process
EAP (extensible authentication protocol)
nature of storage and services to be easily scalable on demand
elastic (VPN)
security concerns while data is in transit
endpoint security vulnerability
two nodes connect without help from intermediate devices directing hops for transmissions
end-to-end connectivity
IPsec; a packet’s data authentication through a public key
ESP payload (encapsulating security payload)
Cisco: transmits PPP data frames through VPN-tunnel packets to look like IP packets in Layer 3
GRE (generic routing encapsulation)
data transformed through a particular algorithm - impossible to reverse
hashed data
virtually hosted desktops on a different physical computer.
HVD (hosted virtual desktop)