Authentication and Authorization Solutions

Welcome to the Authentication & Authorization Solutions practice lab. In this module, you will be provided with the instructions and devices needed to develop your hands-on skills.

Overview

Learning Outcomes:

In this module, you will complete the following exercises:

  • Exercise 1 – Authentication Management
  • Exercise 2 – Authentication
  • Exercise 3 - Access Control Schemes
  • Exercise 4 - Manage File Permissions and Ownership on a Linux System

After completing this module, you should be able to:

  • Use a password vault.
  • Verify the TPM chip.
  • Manage access permissions.
  • Change permissions with numbers.
  • Use commands to check permissions (chmod, chown, chgrp).
  • Set access modes.
  • Work with immutable files.

After completing this module, you should have further knowledge of:

  • Password keys
  • Hardware security module (HSM)
  • Trusted Platform Module (TPM)
  • TPM versus HSM
  • Knowledge-Based Authentication (KBA)
  • Extensible Authentication Protocol (EAP)
  • Challenge Handshake Authentication Protocol (CHAP)
  • Password Authentication Protocol (PAP)
  • 802.1X
  • Remote Authentication Dial-In User Service (RADIUS)
  • Single sign-on (SSO)
  • Security Assertions Markup Language (SAML)
  • Terminal Access Controller Access Control System Plus (TACACS+)
  • OAuth
  • OpenID
  • Kerberos
  • Attribute-based access control (ABAC)
  • Role-based access control (RBAC)
  • Rule-based access control (RBAC)
  • Mandatory access control (MAC)
  • Discretionary access control (DAC)
  • Conditional access
  • Privilege access management (PAM)

Exam Objectives:

The following exam objective is covered in this lab:

3.8 Given a scenario, implement authentication and authorization solutions.

  • Authentication management
  • Authentication
  • Access control schemes
Note: Our main focus is to cover the practical, hands-on aspects of the exam objectives. We recommend referring to course material or a search engine to research theoretical topics in more detail.