Free Trial

Safari Books Online is a digital library providing on-demand subscription access to thousands of learning resources.

Overview

Access Control

Shon Harris

The fast, powerful way to prepare for your CompTIA Security+ exam!

Get all the hands-on training you need to pass (ISC)²’s tough SSCP exam, get certified, and move forward in your IT security career! In this online video, the world’s #1 information security trainer walks you through every skill and concept you’ll need to master. This online video contains over six hours of training adapted from Shon Harris’s legendary five-day SSCP boot camps–including realistic labs, scenarios, case studies, and animations designed to build and test your knowledge in real-world settings!

Comprehensive coverage of CompTIA Security+ domains of knowledge:

     .    Access Control Characters

     .    Fraud Controls

     .    Access Control Matrix

     .    Remote Authentication

     .    Wireless Proximity Devices

     .    Alarm Systems

About the Shon Harris Security Series

This online video is part of a complete library of books, online services, and videos designed to help security professionals enhance their skills and prepare for their certification exams. Every product in this series reflects Shon Harris’s unsurpassed experience in teaching IT security professionals.

Category: Security

System Requirements

OPERATING SYSTEM: Windows 2000, XP, or Vista; Mac OS X 10.4 (Tiger) or later
MULTIMEDIA: DVD drive; 1024 x 768 or higher display; sound card with speakers
COMPUTER: 500MHz or higher CPU; 128MB RAM or more

Subscriber Reviews

Average Rating: 3 out of 5 rating Based on 1 Rating

"Segments too short and too many. Content OK." - by One4NetSec on 19-MAR-2010
Reviewer Rating: 1 star rating2 star rating3 star rating4 star rating5 star rating
The content seems adequate, although Shon seems spacey compared to the male presenter. Basically, the over 6 hours and 30 minutes of VODs ranging in length from 8 SECONDS to a maximum of 3:48 (most measured in only seconds) was just more than I could handle. The longest clip in the sequence is the introduction (6 minutes). I didn't make past the first 10 clips.

The constant toggling back and forth to start the next VOD distracts from the content. The links don’t change color when clicked, so you must remember where you left off so that you can pick the next in the sequence – in the hundred or so that there are, that can be a little challenging. There should be some facility to stack a few of these VODs so that you can forego the constant toggle, click, wait-for-video sequence viewing watching this becomes.

Report as Inappropriate

Table of Contents

Chapter/Selection

Time

Course Introduction

Play Video

00:06:58

Domain 3 – Access Control

Preview

00:00:07

Access Control

Preview

00:00:42

Definitions

Preview

00:01:05

Access Control Mechanism Examples

Preview

00:01:02

Technical Controls

Preview

00:00:53

Access Control Characteristics

Preview

00:03:25

Preventive Controls

Preview

00:00:55

Preventive – Administrative Controls

Preview

00:01:14

Fake Login Pages Look Convincing

Preview

00:01:05

Detective – Administrative Control

Preview

00:02:08

Detective Examples

Preview

00:00:48

Administrating Access Control

Preview

00:01:24

OS, Application, Database

Preview

00:00:36

Administrating Access Control

Preview

00:01:00

Authorization Creep

Preview

00:00:58

Accountability and Access Control

Preview

00:01:25

Trusted Path

Preview

00:02:59

Fake Login Pages Look Convincing

Preview

00:01:44

Who Are You?

Preview

00:02:07

Identification Issues

Preview

00:00:48

Authentication Mechanisms Characteristics

Preview

00:00:43

Strong Authentication

Preview

00:02:01

Fraud Controls

Preview

00:02:40

Internal Control Tool: Separation of Duties

Preview

00:01:14

Authentication Mechanisms in Use Today

Preview

00:00:24

Biometrics Technology

Preview

00:01:04

Biometric Devices

Preview

00:00:27

Example

Preview

00:01:11

Verification Steps

Preview

00:01:32

Why Use Biometrics?

Preview

00:00:38

Biometric Type

Preview

00:01:43

Iris Sampling

Preview

00:00:40

Finger Scan

Preview

00:00:57

Hand Geometry

Preview

00:00:39

Facial Recognition

Preview

00:01:43

Comparison

Preview

00:00:51

Biometrics Verification

Preview

00:00:40

Issues

Preview

00:01:01

Biometrics Error Types

Preview

00:01:59

Crossover Error Rate

Preview

00:01:44

Biometric System Types

Preview

00:02:51

Passwords

Preview

00:00:39

Password Generators

Preview

00:00:55

Password “Shoulds�

Preview

00:03:31

Password Attacks

Preview

00:01:05

Attack Steps

Preview

00:02:50

Many Tools to Break Your Password

Preview

00:00:52

Rainbow Table

Preview

00:01:27

Passwords Should NOT Contain…

Preview

00:01:25

Countermeasures for Password Cracking

Preview

00:01:06

Cognitive Passwords

Preview

00:00:46

One-Time Password Authentication

Preview

00:01:36

Synchronous Token

Preview

00:01:02

One Type of Solution

Preview

00:02:33

Synchronous Steps

Preview

00:00:47

Challenge Response Authentication

Preview

00:04:16

Asynchronous Token Device

Preview

00:00:35

Asynchronous Steps

Preview

00:02:52

Challenge Response Authentication

Preview

00:01:04

Passphrase Authentication

Preview

00:01:29

Key Protection

Preview

00:02:14

Smart Card

Preview

00:00:56

Characteristics

Preview

00:01:09

Card Types

Preview

00:00:50

Smart Card Attacks

Preview

00:01:34

Software Attack

Preview

00:01:02

Side Channel Attack

Preview

00:01:18

Side Channel Data Collection

Preview

00:00:50

Microprobing

Preview

00:00:53

Identity Management

Preview

00:02:19

How Are These Entities Controlled?

Preview

00:00:55

Some Current Issues

Preview

00:01:22

Management

Preview

00:03:00

Typical Chaos

Preview

00:00:48

Different Identities

Preview

00:01:44

Identity Management Technologies

Preview

00:00:47

Directory Component

Preview

00:01:17

Enterprise Directory

Preview

00:00:47

Directory Responsibilities

Preview

00:01:02

Authoritative Sources

Preview

00:01:47

Meta Directory

Preview

00:02:26

Directory Interactions

Preview

00:01:45

Web Access Management

Preview

00:01:27

Web Access

Preview

00:05:08

Password Management

Preview

00:02:20

Legacy Single Sign-On

Preview

00:02:46

Account Management Systems

Preview

00:02:22

Provisioning Component

Preview

00:01:56

Provisioning

Preview

00:01:59

Not Just Computers

Preview

00:00:46

Profile Update

Preview

00:01:28

Working Together

Preview

00:03:28

Enterprise Directory

Preview

00:00:59

Identity Management Solution Components

Preview

00:00:35

Right for Your Company

Preview

00:02:16

Federated Identity

Preview

00:02:58

Different Technologies

Preview

00:00:56

Single Sign-on Technology

Preview

00:00:30

Single Sign-on

Preview

00:01:49

Directory Services as a Single Sign-on Technology

Preview

00:01:04

Active Directory

Preview

00:00:57

Security Domain

Preview

00:01:27

Domains of Trust

Preview

00:00:34

Domain Illustration

Preview

00:00:28

Thin Clients

Preview

00:00:58

Example

Preview

00:01:12

Kerberos as a Single Sign-on Technology

Preview

00:00:51

Kerberos Components Working Together

Preview

00:01:47

Pieces and Parts

Preview

00:00:12

More Components of Kerberos

Preview

00:00:31

KDC Components

Preview

00:00:40

Kerberos Steps

Preview

00:09:08

Tickets

Preview

00:02:00

Steps of Validation

Preview

00:01:16

Kerberos Security

Preview

00:01:29

Issues Pertaining to Kerberos

Preview

00:01:24

Kerberos Issues

Preview

00:01:30

SESAME as a Single Sign-on Technology

Preview

00:00:38

SESAME Steps for Authentication

Preview

00:02:18

Combo

Preview

00:01:21

Models for Access

Preview

00:00:53

Access Control Models

Preview

00:00:13

Discretionary Access Control Model

Preview

00:00:45

ACL Access

Preview

00:02:07

Enforcing a DAC Policy

Preview

00:00:52

Security Issues

Preview

00:01:19

Mandatory Access Control Model

Preview

00:01:49

MAC Enforcement Mechanism – Labels

Preview

00:02:06

Formal Model

Preview

00:00:57

Software and Hardware

Preview

00:00:58

Software and Hardware Guards

Preview

00:01:09

Where Are They Used?

Preview

00:00:44

SELinux

Preview

00:00:30

MAC versus DAC

Preview

00:01:13

Role-Based Access Control

Preview

00:01:13

RBAC Hierarchy

Preview

00:01:44

RBAC and SoD

Preview

00:00:45

Acquiring Rights and Permissions

Preview

00:00:47

Rule-Based Access Control

Preview

00:02:30

Access Control Matrix

Preview

00:01:36

Capability Tables

Preview

00:00:34

Temporal Access Control

Preview

00:00:53

Access Control Administration

Preview

00:00:42

Access Control Methods

Preview

00:00:35

Centralized Approach

Preview

00:00:54

Remote Centralized Administration

Preview

00:01:35

RADIUS

Preview

00:00:38

RADIUS Steps

Preview

00:00:54

RADIUS Characteristics

Preview

00:01:16

TACACS+ Characteristics

Preview

00:01:36

Diameter Characteristics

Preview

00:02:27

Diameter Protocol

Preview

00:01:00

Mobile IP

Preview

00:01:35

Diameter Architecture

Preview

00:01:40

Two Pieces

Preview

00:01:09

AVP

Preview

00:03:46

Decentralized Access Control Administration

Preview

00:01:45

Controlling Access to Sensitive Data

Preview

00:02:00

Protecting Access to System Logs

Preview

00:02:05

Accountability = Auditing Events

Preview

00:00:44

Agenda 2

Preview

00:02:18

IDS Steps

Preview

00:01:25

Network IDS Sensors

Preview

00:02:00

Host IDS

Preview

00:01:31

Combination

Preview

00:01:37

Types of IDSs

Preview

00:02:31

Signature-Based Example

Preview

00:02:28

Behavior-Based IDS

Preview

00:03:32

Statistical Anomaly

Preview

00:01:04

Statistical IDS

Preview

00:00:45

Protocol Anomaly

Preview

00:01:44

What Is a Protocol Anomaly?

Preview

00:01:30

Protocol Anomaly Issues

Preview

00:00:48

Traffic Anomaly

Preview

00:03:47

IDS Response Mechanisms

Preview

00:01:09

Responses to Attacks

Preview

00:01:37

IDS Issues

Preview

00:01:54

Intrusion Prevention System

Preview

00:02:18

Differences

Preview

00:00:24

Vulnerable IDS

Preview

00:00:46

Trapping an Intruder

Preview

00:01:42

Controlling Remote Access

Preview

00:10:38

Remote Authentication

Preview

00:02:13

Mutual Authentication

Preview

00:02:46

Without Mutual Authentication

Preview

00:02:23

Group Policies

Preview

00:01:54

File and Print Resources

Preview

00:02:14

File and Print Resources – Protection

Preview

00:02:06

Physical Access Security

Preview

00:00:48

Different Types of Threats

Preview

00:00:42

Wake Up Call

Preview

00:00:35

Not Just Hacking

Preview

00:00:36

Number One Priority

Preview

00:01:18

Physical Security Program Goals

Preview

00:01:41

Planning Process

Preview

00:01:34

Risk Assessment Needs to be Carried Out

Preview

00:01:03

Deterrence Options

Preview

00:01:05

Delay

Preview

00:00:19

Layered Defense Model

Preview

00:00:48

Detection

Preview

00:01:04

Weak Link in the Chain

Preview

00:00:41

Agenda 1

Preview

00:01:19

Crime Prevention through Environmental Design

Preview

00:02:13

CPTED Main Strategies

Preview

00:00:38

Target Hardening

Preview

00:00:41

Access Barriers

Preview

00:02:11

Facility Construction

Preview

00:00:49

Construction Materials

Preview

00:00:43

Rebar Encased in Concrete

Preview

00:00:24

Data Center

Preview

00:01:04

Designing a Secure Site

Preview

00:01:24

Door Types

Preview

00:01:50

Window Types

Preview

00:01:13

Sensitive Areas

Preview

00:01:00

Security Zones

Preview

00:00:16

Various Sensors

Preview

00:00:13

Lock Types

Preview

00:01:46

Entry Access Control

Preview

00:01:53

Wireless Proximity Devices

Preview

00:00:48

Device Types

Preview

00:00:42

Piggybacking

Preview

00:00:49

Entrance Protection

Preview

00:01:19

Door Configurations

Preview

00:00:32

External Boundary Protection

Preview

00:02:53

Fencing Characteristics

Preview

00:00:42

Fencing Issues

Preview

00:00:50

Gates

Preview

00:01:39

Lighting Issues

Preview

00:01:09

Perimeter Security – Security Guards

Preview

00:00:42

Guard Tasks

Preview

00:01:03

Security Guards

Preview

00:01:56

CCTV

Preview

00:04:27

Agenda 2

Preview

00:01:00

Intrusion Detection Characteristics

Preview

00:01:03

Electro-Mechanical Sensors

Preview

00:01:12

Volumetric Sensors

Preview

00:02:07

Alarm Systems

Preview

00:00:44

Securing Mobile Devices

Preview

00:02:07

Agenda 3

Preview

00:00:27

HVAC Attributes

Preview

00:01:37

Environmental Considerations

Preview

00:01:00

Who’s Got Gas?

Preview

00:01:03

Documentation of Procedures

Preview

00:06:29

Power Preventive Measures

Preview

00:01:45

Device Protection

Preview

00:01:13

Agenda 4

Preview

00:01:24

Automatic Detector Mechanisms

Preview

00:02:18

Fire Detection

Preview

00:01:33

Fire Types

Preview

00:02:55

Emergency Power Off Switch

Preview

00:01:08

Fire Suppression Systems

Preview

00:04:23

Fire Extinguishers

Preview

00:00:46

Emergency Procedures

Preview

00:01:40

Domain 3 Review

Preview

00:00:45