User Authentication Flashcards

(8 cards)

1
Q

What are the two steps of User Authentication?

A

Identification, Verification

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are three approaches to authentication?

A

What you know (password), what you have (a key), who you are (fingerprint)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Attack against Password Authentication: What is Phishing as an attack? Countermeasure to this Phishing?

A

Make a fake website that user puts password into. Server-side authentication so you know server is legit

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Attack against Password Authentication: What is Interception as an attack? Countermeasure to this Interception?

A

Attacker intercepts password being written. Encrypt communication between users and websites

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are 2 measures against password brute force attacks?

A

Lock out after certain amount of attempts, Password policies (e,g, minimum password length)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are 2 ways of measuring the effectiveness of a password?

A

Password Strength, Entropy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How is Password Strength calculated?

A

|Alphabet| ^ length of password

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

How is Entropy calculated?

A

n * log base 2 |a|

How well did you know this?
1
Not at all
2
3
4
5
Perfectly