Comptia+ Chapter 7 Flashcards
Identity and access management (IAM)
Technologies that provide control over user validation and the resources that may be accessed
Identity proofing
Requiring the user to provide proof that they are the unique user
Somewhere you are
Authentication, based on where the user is located
Something you are
An authentication method based on the features and characteristics of an individual
Something you have
A type of authentication credential based on the approved user having a specific term in their possession.
Something you know
Authentication based on something the user knows, but no one else knows.
Password
A secret combination of letters, numbers, and/or characters that only the user should have knowledge of
Brute force attack
An attack in which every possible combination of letters, numbers, and characters is combined to attempt to determine the user’s password.
Password spraying
An attack that uses one or a small number of commonly used passwords when trying to log into several different user accounts.
Hard/soft authentication tokens
Hardware and software-based authentication tokens.
Multifactor authentication (MFA)
Using more than one type of authentication credential
Security key
A dongle inserted into a USB port or lightning port or held near the device. The key contains all the necessary cryptographic information to authenticate the user
Attestation
A key pair “burned” into a security key during manufacturing and is specific to a device model.
Biometrics
A category of authentication credentials that rests on the features and characteristics of the individual
Salting
Adding a random string to a hash algorithm for enhanced security
Key stretching
A password hashing algorithm that requires significantly more time than standard hashing algorithms to create the digest
Password vaulting
An enterprise-level system for storing user password credentials in a highly protected database on the organization’s network
Password manager
A software application or on my website that stores user passwords along with login information
Default passwords
Standard preconfigured, passwords.
Reuse
Using the same password on multiple accounts
Expiration
The point in time when a password is no longer valid.
Age
The period of time that a password must be used before a user can change it.
Provisioning
Initially, setting up user accounts
De-provisioning
Removing user accounts