Archive for the ‘Encyclopedia’ Category

firewall_icon

Access Control by Network Firewalls

Computer networks can be protected from internal and external threats by using firewalls. The concept is that a specially configured firewall on the network will block unwanted access. However, this is a grossly misunderstood concept, and many organizations do not understand firewall capabilities and limitations. As a result, there can be a false sense of [...]

chain and lock

Kerberos Single Sign-On

All computer networks are prone to access control problems. It is an ongoing challenge to provide access to legitimate users while blocking access from all others. Computer users demand ease of use, while computer custodians strive for tighter controls. Unfortunately, network access is predominantly a perimeter defense. Better controls are sorely needed at the application [...]

biometrics

Using Biometrics: Problems with Biometrics

Using biometric systems has some drawbacks. How will the biometric results be used? Is the biometric system expected to provide identification or authentication? Biometric systems face issues of social acceptability. The users may have concerns about sanitary health issues regarding physical contact or about invasion of privacy. Biometric data must be managed to ensure the [...]

iris scan

Using Biometrics: Characteristics Categories

Biometrics uses unique physical characteristics to authenticate the identity claimed by the user. This is accomplished by using either physiological characteristics or behavioral characteristics. You are expected to understand the different types of biometric data used for authentication.

authentication1

Logical Protection: Fundamental of Authentication

Application software controls provide security by using a combination of user identity, authentication, authorization, and accountability. Identification and authentication (I&A) is the process of establishing and proving one’s identity. It is the process where the system validates both pieces of information: an identity claimed by user and the credentials needed to authenticate this identity. I&A [...]