English Русский Contacts Site map Add to favorites
Registration
Login
Master braindump list
New braindumps
Submit a dump
Get latest dump
braindumps.com.ua
flame
3COM (7)
Adobe (1)
BEA (1)
Checkpoint (22)
Cisco (20)
Citrix (17)
CIW (15)
Compaq (0)
CompTIA (51)
CWNA (2)
EMC (2)
Exin (4)
GEJOS (4)
HDI (1)
HP (4)
IBM (13)
Juniper (1)
Linux Prof Institute (LPI) (2)
Lotus (11)
Microsoft (2461)
Network Appliance (2)
Novell (16)
Oracle (414)
PLSQL (1)
PMI (4)
SAS (1)
Sun (87)
Teradata (4)
Login:
Password:
RSS feed

Contacts
Certification links
Links
Authorized users can post comments.
Please log in or sign up.

back to list
Back to main forum
Check Point Certified Security Administrator NG, Management I 

АвторSubject: Q224
written 18 May 2008 18:07   View profile Jonnik  Edit/Delete  Answer  Answer with quotation
Explanation:
Process of session authentication

1. A user on the client attempts to make a connection through the enforcement module to the server. The enforcement module matches the traffic to a rule that specifies session authentication.
2. The enforcement module establishes a session authentication connection back to the client host (the enforcement module knows the IP address of the host, as this is indicated in the source IP address of the original packet seen by the enforcement module). Because the session authentication agent is running and listening on TCP port 261, the connection from the enforcement module is successful.
3. The enforcement module challenges the session authentication agent for authentication. The agent pops up a dialog box to the user, requiring a username and password to authenticate access for the connection. The user enters the appropriate username and password, which are collected by the session authentication agent and then passed back to the enforcement module over the session authentication connection established in Step 2.
4. The enforcement module receives the authentication information and authenticates it against a local or remote authentication database.
5. Assuming authentication is successful, the connection is added to the connection table, and the original packet sent by the client in Step 1 is forwarded on to the destination server.
6. Subsequent traffic generated between the client and server for the connection initiated in Step 1 is permitted by the enforcement module.It is important to note that the client must separately authenticate any new connections through the enforcement module to the same destination server or other destinations, which is unlike client authentication, where the client could establish any number of new connections after

Current tread:
back to list

Q224 - Go to question 18:07 18.05.08

back to list
Up ^ gen. 0.112 Server date 04:06 04-12-2008 Developed by Zip © 2006 Up ^
Forum
Start online exam simulation
Master braindump
User braindumps
Main forum
Question comments