Domain 5, IAM Flashcards
What is a two way trust?
Trust flows in both directions bewteen two domains.
In Kerberos, what grants ticket granting tickets?
Authentication service via the KDC
In Kerberos, what does the authentication service do?
Issues ticket granting tickets.
Which federated ID management is a protocol for exchanging authentication between domains?
SAML
Which federated ID management is an HTTP service?
OAUTH
Which identity assurance level is the most strict?
IAL 3
What is the FICAM Roadmap concerned with?
Provisioning and de-provisioning process
What are the procedures of the provisioning and de-provisioning process
Provision a user account and apply user permissions - user request, owner validate, app admin create account, notify
Modify user permissions - user request, resource owner validate, app admin modify, notify
Deprovision user account and end user permissions - resource owner notification, app admin removal
What is a shortcut trust?
A trust that is explicitly defined in addition to the trust relationships already created between domains in a forest.
What are four types of domain trusts?
One way
Two Way
Short cut
External
What are the parts to IDaaS?
IGA - identity governance and administration - provisioning of users to cloud applications and password reset functionality
Access - user authentication, SSO, authorization, federation
Intelligence - identity access log monitoring
In Kerberos, what identifies a service?
Service principal name
What are the OAUTH roles?
Resource Owner
Resource Server
Client Application
Authorization Server
What is SOAP?
Simple object access protocol
An XML structure for messages over HTTP, used to exchange structured information to web services. It is encapsulated data.
What is an external trust?
Used between forests and organizations.