Reference no: EM131052977
Problems with Passwords Authentication
Network and application managers need to know who is accessing their systems to determine appropriate access levels. Typically, they require that users create secret passwords. A secret password, known only to the user, allows an administrator to feel confident that a user is who the user says he or she is. Systems administrators even have the authority to determine the characteristics of passwords. For example, they may set a minimum length and require that a password include numbers, symbols, or mixed letter case. They may also require that a user change his or her password every few weeks or months. These approaches have numerous problems:
• Users often forget complicated or frequently changing passwords, resulting in frequent calls to a help desk. The help-desk employee then faces the burden of identifying the employee by some other means and resetting the password. This process takes time and is subject to social engineering.
• Users may write down their passwords. However, this leaves passwords subject to discovery and theft. • Users often pick the same password for many different accounts, which means that someone who discovers one of these passwords then has the "keys" to all the accounts.
• Users may pick an easy-to-remember password, which is easy to anticipate and therefore easy to guess. Password-cracking programs cycle through entire dictionaries of English language words and common word/number combinations such as "smart1" or "2smart4U."
• Users may give away their passwords over the phone (social engineering) or via e-mail (phishing, a type of social engineering) to individuals representing themselves as a system administrator. Perhaps you have already received e-mails purportedly from a financial institution claiming identity or account difficulties and asking you to "reconfirm" your account information on their authentic-looking Web site.
As you can see, using passwords to identify a person is fraught with problems. Here are some alternatives to explore. Look up each authentication approach listed below on the Internet, describe the method in your own words (be sure to cite your sources), and briefly list the advantages and disadvantages.
a. Biometrics (biological measuring)
b. Smart cards
c. Biochips
Payments are made at the beginning of each year
: A saver wants $180,000 after 10 years and believes that it is possible to earn an annual rate of 10 percent on invested funds. What amount must be invested each year if the payments are made at the BEGINNING of each year?
|
Discipline areas-bodies of knowledge
: The following topic(s) will demonstrate what the discussion is about, but feel free to branch off or expand on the topics. At the end of the discussion, you will be asked to craft a 150 word reflection on what you have learned through this convers..
|
Question regarding the melissa martinez
: What is a sexual script? How is it formed? When is it called into play? What does it do for us? What assumptions do we make about others' scripts? In your answer, make reference to relevant research and researchers noted in your course materials.
|
Can you identify where this issue may be in its life cyle
: Discuss the "Four I's" of the nonmarket environment of your organization, a former organization, or an organization in which you are interested. Can you identify where this issue may be in its "life cyle"? What would be the highest priority strate..
|
Problems with passwords authentication
: Network and application managers need to know who is accessing their systems to determine appropriate access levels. Typically, they require that users create secret passwords. A secret password, known only to the user, allows an administrator to ..
|
How to value a capital budgeting project
: In earlier chapters we learned how to value a capital budgeting project by finding the after-tax cash flows, assessing risk, estimating the cost of capital and finding the NPV. Implicit in some of our estimations was the exclusive consideration of eq..
|
What constitutional issue is raised in adarand litigation
: What constitutional issue is raised in the Adarand litigation - Was the decision of the Court majority correct? Why or why not?
|
Patterns of irrational or unethical decision making
: Provide an example from your own experience where you acted in accordance with one or more of the patterns of irrational or unethical decision making.
|
Explain the purposes of each step of the new-product process
: Select a product or service. Then select three different organizations that provide your selected product or service and compare the prices associated with your selected product or service. What is the difference between the prices among the diffe..
|