Главная
Study mode:
on
1
Intro
2
Outline
3
Intervening revisions
4
What is Digital Identity?
5
Rev 2: Level of Assurance
6
Memorized Secret
7
Pre-registered Knowledge
8
Lookup Secret
9
Out of Band Token
10
One Time Password
11
Cryptographic
12
Digression: Cert to SSH key
13
A digression: PIV (aka HSPD-12)
14
Another digression: Type 1 versus Type 2 errors
15
New NIST Digital Identity Guidelines
16
Rev 2 vs Rev 3
17
Identity Assurance Level
18
Trusted Referee proofing
19
Supervised Remote In-Person Proofing
20
Knowledge Based Verification
21
Authentication Assurance Level
22
Rev 3 Types of Authenticators
23
Additional Authenticators
24
Disallowed and Restricted Authenticators
25
Password rules are stupid
26
What is a credential?
27
A Certificate is a Credential
28
Federation Assurance Level
29
Contact and Slides
Description:
Explore the evolution of digital identity guidelines and authentication methods in this 51-minute conference talk from BSides Nashville 2018. Dive into the history of identity assurance levels, various authentication techniques, and the latest NIST Digital Identity Guidelines. Learn about different types of authenticators, including memorized secrets, pre-registered knowledge, and cryptographic methods. Examine the changes between revision 2 and revision 3 of the guidelines, covering topics such as supervised remote in-person proofing and knowledge-based verification. Gain insights into the Identity Assurance Level, Authentication Assurance Level, and Federation Assurance Level. Discover why traditional password rules are considered ineffective and understand the concept of credentials, including digital certificates. Access contact information and slides for further reference.

See the ID Rules Before Us - How How How How

Add to list