IAM Flashcards

1
Q

Clipping level

A

Prevent administrative overhead

Allow extra failed login
Prevent password guessing by locking the user from a certain timeframe or admin unlock

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

3 types of authentification ?

A

Type 1 : something’s you know
Type 2: something you have
Type 3: something you are

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Token HOTP

A

HMAC based one time password

Generate code when asked valid until used

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Token TOTP

A

Time based one time password
Synchronized

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

FRR (false rejection rate)

A

Type 1 error
Authorized users are rejected

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

FAR (false accept rate)

A

Type 2 error
Unauthorized user is granted access

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

CER (crossover error rate)

A

The meeting point between frr and far, this is where we want to be

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

ABAC

A

Attribute based access control

Access granted based on subject objects AND conditions
Also named as pbac or cbac

Who, what, where are you connected from, what time is it ?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

RUBAC

A

Rule access based

Rule as acl and firewall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly