Difference between revisions of "Assurance"

From MgmtWiki
Jump to: navigation, search
(Solutions)
(Context)
Line 4: Line 4:
  
 
==Context==
 
==Context==
NIST 800-63-3
+
 
 +
* Some means for assuring the [[Web Site Security]] is required. See that page for details.
 +
* The rest of this page is about establishing a level of assurance for a [[User]] also known as a [[Subject]].
 +
*NIST 800-63-3
  
 
==Problems==
 
==Problems==

Revision as of 10:04, 5 July 2018

Full Title or Meme

The level of trust that can be afforded a claim of an Identifier or Attribute.

Context

  • Some means for assuring the Web Site Security is required. See that page for details.
  • The rest of this page is about establishing a level of assurance for a User also known as a Subject.
  • NIST 800-63-3

Problems

Solutions

  • AAL1 ==> password
  • AAL2 ==> 2FA
  • AAL3 ==> U2F

References