Summary
In this chapter, we have studied the challenges large enterprises face when they must support complex environments, needing to manage internal users and their authentication to external service providers. We have looked at the role of federation services, to ensure robust authentication and access control are addressed in hybrid environments. We have looked at the use of MFA as a single factor is known to be weak. We have studied the options to ensure authentication is needed to gain access to a network.
In this chapter, you have gained the following skills:
- Securely managing credentials
- Understood the situations that require identity federation
- Examined access control models
- Understood authentication and authorization protocols
- Examined the choices for MFA
These core skills will be useful as we move into the next domain: security operations.