CNIT 242 FINAL EXAM REVIEW |COMPLETE QUESTIONS WITH
100% RATED EXPERT SOLUTIONS |2026 LATEST UPDATED
What is authentication? - (answer)"Do you have the credentials necessary to access this system?"
What is authorization? - (answer)"What do you have permission to do once authenticated?"
What is accounting? - (answer)"Once authorized to access a resource, how much of the resource
are you using?"
How can authentication be accomplished? - (answer)- what you know
- what you have
- what you are
What is two-factor authentication? - (answer)uses two of the authentication methods to prove an
identify
What are some types of identification? - (answer)- user ID (UID)
- physical object (ie. ATM card)
- biometrics
,- digital certificates
What are some examples of proofs of identification? - (answer)- passwords
- access code (ie. PIN number)
- one-time tokens
- biometrics
- digital certificates
How are user IDs typically created? - (answer)typically created according to some algorithm
True/False: Ideally, a user ID should be an email address - (answer)false
What are some ways to ensure the proper application of user IDs and passwords? - (answer)-
don't write passwords down!!
- avoid easy to guess passwords (names of family members/pets, birthdates, etc)
- use at least EIGHT characters!
How often should passwords be changed? - (answer)- minimum 30 days
- 90 days is OPTIMAL
,What are some password security recommendations? - (answer)- force periodic password
changes
- disallow the last x passwords
- mix case
- use non-alpha characters
- disallow plain English passwords
What is the password security tradeoff? - (answer)"The more strict the password rules, the higher
the chances users will violate the first rule of secure passwords."
What is the recommended minimum length for web passwords? - (answer)10 characters
How do biometrics work? - (answer)- functions as both ID and proof of ID
- physiological
- behavioral
- issues with FALSE POSITIVES and FALSE NEGATIVES
, What is a digital certificate? - (answer)- encrypted data file that uses a Certificate Authority to
guarantee the identity of the holder (trust CA = trust certificate used by CA)
- also includes an ENCRYPTION KEY for secure transmissions
What is authentication compared against? - (answer)a known-good object
What is a domain logon? - (answer)- users in a domain environment will authenticate against
domain controller(s)
- login credentials stored in AD as an account object
- provided credentials are compared against those stored in AD
- each account object is assigned a Security Identifier (SID)
What is a security identifier (SID)? - (answer)- unique identifier that includes an ID for the user,
groups the user is a member of, and the domain to which the user is authenticating
What is remote authentication dial in user server (RADIUS)? - (answer)- usually uses a network
access server as RADIUS client
- uses RADIUS server as central authentication point
100% RATED EXPERT SOLUTIONS |2026 LATEST UPDATED
What is authentication? - (answer)"Do you have the credentials necessary to access this system?"
What is authorization? - (answer)"What do you have permission to do once authenticated?"
What is accounting? - (answer)"Once authorized to access a resource, how much of the resource
are you using?"
How can authentication be accomplished? - (answer)- what you know
- what you have
- what you are
What is two-factor authentication? - (answer)uses two of the authentication methods to prove an
identify
What are some types of identification? - (answer)- user ID (UID)
- physical object (ie. ATM card)
- biometrics
,- digital certificates
What are some examples of proofs of identification? - (answer)- passwords
- access code (ie. PIN number)
- one-time tokens
- biometrics
- digital certificates
How are user IDs typically created? - (answer)typically created according to some algorithm
True/False: Ideally, a user ID should be an email address - (answer)false
What are some ways to ensure the proper application of user IDs and passwords? - (answer)-
don't write passwords down!!
- avoid easy to guess passwords (names of family members/pets, birthdates, etc)
- use at least EIGHT characters!
How often should passwords be changed? - (answer)- minimum 30 days
- 90 days is OPTIMAL
,What are some password security recommendations? - (answer)- force periodic password
changes
- disallow the last x passwords
- mix case
- use non-alpha characters
- disallow plain English passwords
What is the password security tradeoff? - (answer)"The more strict the password rules, the higher
the chances users will violate the first rule of secure passwords."
What is the recommended minimum length for web passwords? - (answer)10 characters
How do biometrics work? - (answer)- functions as both ID and proof of ID
- physiological
- behavioral
- issues with FALSE POSITIVES and FALSE NEGATIVES
, What is a digital certificate? - (answer)- encrypted data file that uses a Certificate Authority to
guarantee the identity of the holder (trust CA = trust certificate used by CA)
- also includes an ENCRYPTION KEY for secure transmissions
What is authentication compared against? - (answer)a known-good object
What is a domain logon? - (answer)- users in a domain environment will authenticate against
domain controller(s)
- login credentials stored in AD as an account object
- provided credentials are compared against those stored in AD
- each account object is assigned a Security Identifier (SID)
What is a security identifier (SID)? - (answer)- unique identifier that includes an ID for the user,
groups the user is a member of, and the domain to which the user is authenticating
What is remote authentication dial in user server (RADIUS)? - (answer)- usually uses a network
access server as RADIUS client
- uses RADIUS server as central authentication point