100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Summary

Summary Identity Management

Rating
-
Sold
-
Pages
6
Uploaded on
16-10-2024
Written in
2022/2023

The Advanced Cybersecurity and Risk Management notes are from the University of Phoenix Advance Cybersecurity Certification course - these notes will assist you in understand different aspects and domains of Information Security. The notes will guide you through the process of understanding each domain to prepare you for future certification exams.

Show more Read less
Institution
Cyber Security Specialist
Course
Cyber Security Specialist









Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
Cyber Security Specialist
Course
Cyber Security Specialist

Document information

Uploaded on
October 16, 2024
Number of pages
6
Written in
2022/2023
Type
Summary

Content preview

Information Security – Cybersecurity Notes
UoPX Advanced Cybersecurity Certification
Implementing Identity Management
 Centralized Access Control
o Implies that all authorization verification is performed by a single entity within a
system
o Requires a small team, administrative overhead is lower, all changes are made in a
single system
 Decentralized Access Control
o distributed - implies that various entities throughout the system perform
authorization verification
o Requires multiple teams/individuals - administrative overhead is higher because
changes must be made across numerous systems
 SSO - Single Sign-On
o Is a centralized access control technique - allows a subject to be authenticated
once on a system to access multiple resources
o Convenient for users - increase security

o Users don't have to remember multiple UID/PID

o Reduces # of accounts per subject against multiple devices

 LDAP and Centralized Access Control
o Directory Service is a centralized db that includes information about subjects and
objects
o LDAP is Lightweight Directory Access Protocol

o Subjects authenticate to the directory service

o Multiple domains/trusts are used

o Security domain is a collection of subjects and objects that share a common
security policy
o Individual domains can operate separately

o Trusts are established between domains to create a security bridge

 Can be one-way or two-way
 LDAP and PKI's


1

, Information Security – Cybersecurity Notes
UoPX Advanced Cybersecurity Certification
o Public Key Infrastructure uses LDAP when integrating digital certificates into
transmission
o LDAP and centralized access control systems can be used to support SSO
capabilities
 Kerberos - ticket authentication is a mechanism that employs a 3rd party entity to prove
identification and authentication
o Key Distribution Center

 KDC - trusted 3rd party that provides authentication services
 Uses symmetric key cryptography to authenticate
 Clients/servers are registered in the KDC - it maintains the secret keys
o Kerberos Authentication Server

 Authentication sever hosts the functions for KDC
 TGS - ticket granting service and an authentication service (AS)
 AS verifies or rejects the authenticity and timeliness of tickets
o Ticket-Granting Ticket

 Provides proof that the subject has authenticated through a KDC and is
authorized to request tickets
 Encrypted and includes symmetric key, expiration time and users IP
address
o Ticket

 An encrypted message that provides proof that the subject is authorized to
access an object
 Known as a Service Ticket
o Logon Process

 User types a username/password into the client
 Client encrypts the username with AES for transmission to the KDC
 KDC verifies the username against a database of known credentials
 KDC generates a symmetric key that will be used by the client and
Kerberos server


2
$5.99
Get access to the full document:

100% satisfaction guarantee
Immediately available after payment
Both online and in PDF
No strings attached

Get to know the seller
Seller avatar
jimb6056

Also available in package deal

Thumbnail
Package deal
Cybersecurity and Risk Management
-
30 2024
$ 179.70 More info

Get to know the seller

Seller avatar
jimb6056 (self)
View profile
Follow You need to be logged in order to follow users or courses
Sold
0
Member since
1 year
Number of followers
0
Documents
37
Last sold
-

0.0

0 reviews

5
0
4
0
3
0
2
0
1
0

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions