Domain 5 Flashcards

1
Q

When an authorized subject is rejected

A

FRR (False rejection rate)

aka Type 1 error

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

When an unauthorized subject is accepted

A

FAR (False acceptance rate)

aka Type 2 error

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

false ___ is worse than false ____

A

acceptance; reject

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

When sensitivity of biometric systems increases, ___ will rise and ___ will drop

A

FRR; FAR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

The sensitivity of biometric systems lower ___ will drop and __ will rise

A

FRR; FAR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

____ occurs when users gain more access to systems over time

A

access aggregation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

SESAME uses ____ rather than Kerberos’ tickets

A

privilege attribute certificates (PAC)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

RADIUS uses ports ___ and ___

A

UDP 1812(authentication) and 1813(accounting)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

The principal of access control is?

A

accountability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Kerberos only supports ____ encryption

A

symmetric

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Sesame supports both ____ and ___ encryption

A

symmetric; asymmetric

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Differing from SSO, FIM allows users to gain access to internal and ___ resources

A

external

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What are the 4 components of SAML?

A

Profile: define how saml can be used for different business use cases

Binding: maps saml onto different communication protocols

Protocol: defines how entities send and respond to requests

Assertion: defines authentication and authorization in attributes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

WS-Federation provides ___ and ___

A

authentication and authorization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

OpenID provides ___

A

authentication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q
A

authorization