Outline for March 6, 2006
Reading: text, §14.6, 12.1–12.5
- Greetings and felicitations!
- Puzzle of the day
- Identity
- State and cookies
- Anonymous remailers: type 1 and type 2 (mixmaster)
- Authentication:
- validating client (user) identity
- validating server (system) identity
- validating both (mutual authentication)
- Basis: what you know/have/are, where you are
- Passwords
- Problem: common passwords
- May be pass phrases: goal is to make search space
as large as possible, distribution as uniform as possible
- Other ways to force good password selection:
random, pronounceable, computer-aided selection
- Password Storage
- In the clear; Multics story
- Enciphered; key must be kept available
- Hashed; show UNIX versions, including salt
Version of March 7, 2006 at 7:41 PM
You can also obtain a PDF version of this.