Difference between revisions of "Assurance"
From MgmtWiki
(→Context) |
(→Context) |
||
Line 6: | Line 6: | ||
* Some means for assuring the [[Web Site Security]] is required. See that page for details. | * Some means for assuring the [[Web Site Security]] is required. See that page for details. | ||
− | * The rest of this page is about establishing a level of assurance for a [[User]] also known as a [[Subject]]. | + | * The rest of this page is about establishing a level of assurance for a [Personal Information]] about a [[User]] also known as a [[Subject]]. |
*NIST 800-63-3 | *NIST 800-63-3 | ||
Revision as of 11:06, 5 July 2018
Full Title or Meme
The level of trust that can be afforded a claim of an Identifier or Attribute.
Context
- Some means for assuring the Web Site Security is required. See that page for details.
- The rest of this page is about establishing a level of assurance for a [Personal Information]] about a User also known as a Subject.
- NIST 800-63-3
Problems
Solutions
- AAL1 ==> password
- AAL2 ==> 2FA
- AAL3 ==> U2F