Mastering Security Basics Flashcards
What are the 3 definitions for MAC
Media Access Control
Mandatory Access Control
Message Authentication Code
POSSIBILITY of a threat exploiting a vulnerability & resulting in a loss
Risk
Any circumstance or event with potential to COMPROMISE CONFIDENTIALITY, INTEGRITY, OR AVAILABILITY
Threat
Reducing chances that a threat will exploit a vulnerability
Risk mitigation
Open source standards used to create one-time-use passwords
HOTP & TOTP
PAP
Password Authentication Protocol (Passwords or PINs in CLEARTEXT)
CHAP
Challenge Handshake Authentication Protocol - encrypted improvement on PAP. Uses CHALLENGE-RESPONSE authentication process.
SAML
XML based authentication for web applications
Radius
Authentication for remote access services. Uses shared secret passwords, and only encrypts during authentication. UDP only.
Diameter
Encrypted improvement on Radius. Uses TCP.
TACACS+
Totally encrypted authentication protocol. Uses TCP
Name 3 AAA (Authentication, Authorization, Accounting) protocols
Radius, Diameter, TACACS+