Multi-Level Authentication Flashcards

1
Q

What is multi-level authentication?

A

MLA is the process of using more than one secret in order to authenticate the user.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the different methods of MLA?

A

Biometrics
Visual passwords
Audio Passwords

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the drawbacks of visual passwords?

A

Users are predictable in their choices as they need to remember lots.
Users choose things that are familiar to them
Users may forget what picture they chose given time as other images may become familiar to them.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the four stages of authentication?

A

Enrollment
Authentication to the system
Replacement
De-registration

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is enrollment to a system?

A

User ID must be matched to a secret

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is authentication to the system?

A

User is challenged by the system to produce the secret they gave at enrollment in order to be logged in.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is replacement in a system?

A

Provide a new secret when the user forgets the secret that they gave at enrollment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is de-registration in a system?

A

Users should have the right to be completely removed from a system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Is the process of authentication the same for every system?

A

No, as some systems need to be stronger in their security than others.

Depending on the security there may be more authentication or more difficult authentication required.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What needs to happen for non-repudiation in a system?

A

Users have to be authenticated beyond reasonable doubt to prove who was using the system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are visual passwords?

A

Use pictures in order to authenticate individuals

Should inhibit insecure practices as users are less likely to write down/draw the image of the person or share disclose it.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What are the different metrics that can be assessed with visual passwords?

A

Locimetric - users locate points on an image
Drawmetric - users sketch their passwords
Searchmetric - users select images in a challenge set

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What are the drawbacks of Searchmetric designs?

A

Susceptible to keylogging and shoulder surfing

Users get confused as to what image is the one they’re looking for

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What are the drawbacks of Locimetric designs?

A

Users tend to select the same points on the image, due to them being processed as a scene and not single images.

Calibration issues mean that the points aren’t going to be picked exactly every time.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What are the drawbacks to drawmetric design?

A

Hard to reproduce same image
Humans tend to draw symmetrically
Humans tend to gravitate towards centre of the image.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly