You Shall Not Pass
Offered By: linux.conf.au via YouTube
Course Description
Overview
Explore the evolution of security measures in Moodle, an open-source learning management system, in this conference talk from linux.conf.au 2020. Discover how outdated password policies were updated to align with NIST guidelines, including checks for compromised passwords and personal information. Learn about the implementation of multi-factor authentication (MFA) and its integration with various authentication methods, including single sign-on (SSO) services. Gain insights into the challenges faced and lessons learned during the security enhancement process, applicable to any application's authentication flow. Understand the importance of adapting security practices to meet modern standards and protect user data effectively.
Syllabus
Intro
What is it?
Some history
Efforts to increase security in pain points.
Password standards
Have I Been Pwned
Dictionary checks
Identifying information
Apply this anywhere
So that's what we did
A look at authentication flow
Moodle account authentication
Existing solutions
Interface layer
The patching process
MFA overview
MFA design considerations
Lessons we learned
Final thoughts
Taught by
linux.conf.au
Related Courses
The Open-Source Chatbot That Accidentally Built a Communitylinux.conf.au via YouTube Add Depth - Stereoscopic Imagery for Everyone
linux.conf.au via YouTube Becoming a Tyrant - Implementing Secure Boot in Embedded Devices
linux.conf.au via YouTube The seL4 Foundation - Growing Through Upheaval
linux.conf.au via YouTube Conference Close
linux.conf.au via YouTube