What is CIA?
Confidentiality
Integrity
Availability
What is Non-Repudiation?
Prevents denial of action via:
Digital signatures
Audit trails
Access Controls (Identification (SID), Authentication, Authorization)
What is AAA?
Authentication: AAA Server; 802.1X
Authorization
Accounting
Name 3 AAA protocols
RADIUS
Diameter
TACACS+
Describe Diameter
RADIUS’s successor; includes 4G, 5G LTE, and WiMAX
Describe RADIUS
Remote Authentication Dial-In User Service
RADIUS Clients (WAPs, Routers, Switches) forward authentication requests to a RADIUS server.
Describe TACACS+
Terminal Access Controller Access Control System Plus; Cisco; routers, switches, firewalls are common clients
Gap Analysis key tasks
Assessment
Benchmarking
Identification
Prioritization
Remediation strategy