9.1. Security Overview

Windows security is multilayered and hinges on a number of mechanisms and challenges that confront any potential intruder. The basic concept behind security is that of allowing only authenticated access to resources through a mechanism called the Challenge-Handshake Authentication Protocol (CHAP). The formal specification for CHAP as it's defined for use on the Internet is part of the RFC 1994 protocol for Point-to-Point Protocol (PPP), but the mechanism has been part of operating systems for quite some time.

In a CHAP authentication, the following steps are performed:

  1. A link is established between the client and server in which the client is the system that requests resources. The link could be from a peer in a peer-to-peer ...

Get Microsoft® Windows Server® 2008: Implementation and Administration now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.