Sunday, June 2, 2019

security terminology :: essays research papers

SecurityTerminologyDefine the following terms1.Authentication dexterity to identify who it isa. ACL (access control list) is associated w/ a given resource. Describes groups, users, machines and their permissions associated with that particular resource.i.Token- bingle time only password keyb.CA- certificate of authority- creates certificates -system or entity trusted to generate and distribute digital certificates. Can be privately use or from a 3rd party e-commerce site. Verifies identity of user. Authentication method.c.RA- Registration Authority-issues certificates-RA verifies credentials supplied by an agent and then sends the CA an okay to issue a certificate.d.PKI- Public Key Infra social structure- Policies and behaviors that surround the deployment and management of key pairs. How you issue two keys at one time.e. Kerberos- Authentication method used by Microsoft. Uses 3 different protocols, listed belowi.TGT- Ticket granting ticket. Allows you to request resources on the network from servers.ii.TGS- Ticket granting server. Accesses a particular network server for tickets.iii. AS- Authentication Server. Equivalent to a morning check-in at security desk of a hotel. Checks the identity of a server.f.CHAP- Challenge handshake authentication protocol. Was knowing to replace the PAP. Communication between server and client proving identity.i.MS-CHAP- Microsoft CHAPg.PAP- Password authentication protocolh.X.509- digital certificate that uniquely identifies a party. Standard structure of a certificate.i.KDC- Key distribution centerj.Biometrics- Authentications based on human anatomy.k.Multifactor- Authentication based on 2 valid authentication methods.l.Mutual Authentication- guest establishes identity to server. Server provides authentication information to client to ensure that illicit servers cannot masquerade as genuine servers. Both parties have to authenticate.2.Encryption- hiding data use algorithms. protection, method of code, algorithms, for mulas a.Asymmetric keys- pair of key values one public and one private.b.Symmetric keys- single encryption key generated.c.DES- Data Encryption bar developed by government.d.Diffie-hellman- encryption algorithm named after its two creators.e.IPSec- used for encryption of TCP/IP traffic. Method of encrypting any IP transmissions.f.PGP- Pretty unattackable privacy- mainly used in email less secure than the PKI.g.RSA- Rivest-Shamir-Adleman- encryption algorithm named after its 3 creators. Using two pair keys.h.SSL- Secure Socket Loader- used mainly on web servers to transmit securely via HTTPS//3.Network protocols and organizationa.DMZ- Demilitarized zone- Zone used for public access. Used with FTP, web servers and DNS servers. b.IDS- Intrusion Detection System- 2 types Active and Passivec.NAT- Network Address Translation- Appends to your logical port. Protects internal hosts. Used with proxy servers. Translates internal IP to Real IP. Uses unique port table. There is 65,000 portsd.T unneling- competency to go to 1 point to another as though you are a single proprietary line.

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.