Domain 5 Flashcards
When an authorized subject is rejected
FRR (False rejection rate)
aka Type 1 error
When an unauthorized subject is accepted
FAR (False acceptance rate)
aka Type 2 error
false ___ is worse than false ____
acceptance; reject
When sensitivity of biometric systems increases, ___ will rise and ___ will drop
FRR; FAR
The sensitivity of biometric systems lower ___ will drop and __ will rise
FRR; FAR
____ occurs when users gain more access to systems over time
access aggregation
SESAME uses ____ rather than Kerberos’ tickets
privilege attribute certificates (PAC)
RADIUS uses ports ___ and ___
UDP 1812(authentication) and 1813(accounting)
The principal of access control is?
accountability
Kerberos only supports ____ encryption
symmetric
Sesame supports both ____ and ___ encryption
symmetric; asymmetric
Differing from SSO, FIM allows users to gain access to internal and ___ resources
external
What are the 4 components of SAML?
Profile: define how saml can be used for different business use cases
Binding: maps saml onto different communication protocols
Protocol: defines how entities send and respond to requests
Assertion: defines authentication and authorization in attributes
WS-Federation provides ___ and ___
authentication and authorization
OpenID provides ___
authentication