From the course: CompTIA Cybersecurity Analyst (CySA+) (CS0-003) Cert Prep

Unlock the full course today

Join today to access over 24,800 courses taught by industry experts.

Password authentication protocols

Password authentication protocols

- [Presenter] Many access control systems rely upon password-based mechanisms to implement something you know security. One of the most common applications of password security is to secure virtual private networks and other remote access technologies. Let's take a look at the protocols used to implement remote access password security. The password authentication protocol or PAP is the earliest of these protocols. In this protocol, the client wishes to authenticate to a server and both the client and the server know the user's password. The client simply transmits the username and password to the server, and the server validates the password. That's about as simple as it gets, and successfully implements password authentication. But there's a major flaw to this approach. PAP does not use any encryption to protect the communication. Anyone able to eavesdrop on the connection can read the username and password from the network. For this reason, PAP should never be used except under…

Contents