Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

6001 Test 1

Total questions: 69

Worksheet time: 35mins

Name
Class
Date
1.

It is not necessary for a certification authority to maintain a list of certificates issued by that CA that were not expired but were revoked. ?

a)

True

b)

False

2.

In order to solve the problem of minimizing the number of times that a user has to enter a password and the problem of a plaintext transmission of the password a server is used.

a)

ticket granting

b)

password ciphering

c)

access code

d)

authentication

3.

User certificates generated by a CA need special efforts made by the directory to protect them from being forged.?

a)

True

b)

False

4.

User certificates generated by a CA need special efforts made by the directory to protect them from being forged.?

a)

True

b)

False

5.

User certificates generated by a CA need special efforts made by the directory to protect them from being forged.?

a)

nonce

b)

option

c)

rtime

d)

realm

6.

___are entities that obtain and employ data maintained and provided by identity and attribute providers, which are often used to support authorization decisions and to collect audit information.

a)

Federations

b)

Principals

c)

CAS

d)

Data Consumers

7.

__is a key used between entities for the purpose of distributing session keys.

a)

permanent key

b)

key distribution center

c)

symmetric key

d)

session relay key

8.

If the sender and receiver each use a different key the system is referred to as encryption.

a)

secret-key

b)

conventional

c)

single-key

d)

asymmetric

9.

The most common key length in modern algorithms is

a)

64 bits

b)

128 bits

c)

32 bits

d)

256 bits

10.

The ciphertext-only attack is the easiest to defend against because the opponent has the least amount of information to work with.

a)

True

b)

False

11.

The automated key distribution approach provides the flexibility and dynamic characteristics needed to allow a number of users to access a number of servers and for the servers to exchange data with each other.?

a)

True

b)

False

12.

In order to prevent an opponent from capturing the login ticket and reusing it to spoof the TGS, the ticket includes a indicating the date and time at which the ticket was issued.

a)

Ovalidation

b)

certificate

c)

timestamp

d)

Orealm

13.

Once the authentication server accepts the user as authentic it creates an encrypted sent back to the client. which is

a)

password

b)

key

c)

access key

d)

ticket

14.

is the insertion of bits into gaps in a data stream to frustrate traffic analysis attempts.

a)

Traffic padding

b)

Notarization

c)

Authentication exchange

d)

Routing control

15.

In developing a particular security mechanism or algorithm one must always consider potential attacks on those security features. ?

a)

True

b)

False

16.

Data origin authentication provides protection against the duplication or modification of data units. ?

a)

True

b)

False

17.

The extension lists policies that the certificate is recognized as supporting, together with optional qualifier information.

a)

policy mappings

b)

directory attribute

c)

certificate policies

d)

authority key identifier

18.

Kerberos version 4 did not fully address the need to be of general purpose.?

a)

True

b)

False

19.

A session key is destroyed at the end of a session.

a)

True

b)

False

20.

The ticket-granting ticket is encrypted with a secret key known only to the authentication server and the ticket granting server. ?

a)

True

b)

False

21.

A approach involves trying every possible key until an intelligible translation of the ciphertext into plaintext is obtained.

a)

triple DES

b)

brute-force

c)

block cipher

d)

computational

22.

The security of symmetric encryption depends on the secrecy of the algorithm, not the secrecy of the key.

a)

True

b)

False

23.

Triple DES was first standardized for use in financial applications in ANSI standard X9.17 in 1985.

a)

True

b)

False

24.

A ____ processes the input elements continuously, producing output one element at a time, as it goes along.

a)

block sipher

b)

cryptanalysis

c)

keystream

d)

Stream

25.

With the introduction of the computer the need for automated tools for protecting files and other information stored on the computer became evident.

a)

True

b)

False

26.

A connection-oriented integrity service deals with individual messages without regard to any larger context and generally provides protection against message modification only. ?

a)

True

b)

False

27.

is a variety of mechanisms used to assure the integrity of a data unit or stream of data units.

a)

Data integrity

b)

Trusted functionality

c)

Event detection

d)

Authentication exchange

28.

The protection of data from unauthorized disclosure is

a)

Confidentiality

b)

no options

29.

There is a natural tendency on the part of users and system managers to perceive little benefit from security investment until a security failure occurs.

a)

True

b)

False

30.

The prevention of unauthorized use of a resource is

a)

access control

b)

1000

c)

data confidentiality

d)

non repudiation

31.

Cryptographic hash functions generally execute slower in software than conventional encryption algorithms such as DES. ?

a)

True

b)

False

32.

____protects against passive attacks (eavesdropping).

a)

Obfuscation

b)

Encryption

c)

Message authentication

d)

SCR?

33.

The purpose of the algorithm is to enable two users to exchange a secret key securely that then can be used for subsequent encryption of messages and depends on the difficulty of computing discrete logarithms for its effectiveness.

a)

Diffie-Hellman

b)

RSA

34.

The private key is known only to its owner.

a)

True

b)

False

35.

X.800 defines as a service that is provided by a protocol layer of communicating open systems and that ensures adequate security of the systems or of data transfers

a)

replay

b)

integrity

c)

authenticity

d)

security service

36.

____is verifying that users are who they say they are and that each input arriving at the system came from a trusted source.

a)

Confidentiality

b)

Integrity

c)

Accountability

d)

Authenticity

37.

The _____ extension lists policies that the certificate is recognized as supporting, together with optional qualifier information.

a)

Certificate Policies extension

b)

no options

38.

is a procedure that allows communicating parties to verify that received messages are authentic. ?

a)

ECB

b)

Message authentication

c)

Passive attack

d)

Encryption

39.

Because of the mathematical properties of the message authentication code function it is less vulnerable to being broken than encryption

a)

True

b)

False

40.

Public key algorithms are indeed based on mathematical functions rather than on simple operations on bits.

a)

True

b)

False

41.

The Feistel structure is a particular example of the more general structure used by all symmetric block ciphers.

a)

True

b)

False

42.

If the message includes a the receiver is assured that the message has not been delayed beyond that normally expected for network transit.

a)

Timestand

b)

sequence number

c)

shared key

d)

error detection code

43.

The Feistel structure is a particular example of the more general structure used by all symmetric block ciphers.

a)

True

b)

False

44.

The property protects against a sophisticated class of attack known as the birthday attack.

a)

preimage resistant

b)

one-way

c)

collision resistant

d)

second preimage resistant

45.

The algorithm performs various substitutions and transformations on the plaintext.

a)

codebook

b)

encryption

c)

cipher

d)

keystream

46.

If the analyst is able to get the source system to insert into the system a message chosen by the analys attack is possible.

a)

chosen ciphertext

b)

chosen plaintext

c)

known plaintext

d)

ciphertext only

47.

The Feistel structure is a particular example of the more general structure used by all symmetric block ciphers.

a)

True

b)

False

48.

Random numbers play an important role in the use of encryption for various network security applications

a)

True

b)

False

49.

The most commonly used symmetric encryption algorithms are stream ciphers.

a)

True

b)

False

50.

A ___ takes as input a source that is effectively random and is often referred to as an entropy source.

a)

PRNG

b)

PRF

c)

PSRN

d)

TRNG

51.

One desirable property of a stream cipher is that the ciphertext be longer in length than the plaintext.

a)

True

b)

False

52.

The advantage of a block cipher is that you can reuse keys.

a)

True

b)

False

53.

"It is easy to generate a code given a message, but virtually impossible to generate a message given a code" describes the hash function property.

a)

collision resistant

b)

strong collision resistant ?

c)

preimage resistant

d)

second preimage resistant

54.

Public key algorithms are useful in the exchange of conventional encryption keys.

a)

True

b)

False

55.

Public key algorithms are based on mathematical functions rather than on simple operations on bit patterns.

a)

True

b)

False

56.

Secure Hash Algorithms with hash value lengths of 256, 384, and 512 bits are collectively known as

a)

SHA-1

b)

SHA-2

c)

SHA-3

d)

SHA-4

57.

In addition to providing authentication, a message digest also provides data integrity and performs the same function as a frame check sequence.

a)

True

b)

False

58.

The purpose of a is to produce a "fingerprint" of a file, message, or other block of data.

a)

message authentication

b)

public key

c)

hash function

d)

private key

59.

Public-key encryption is also referred to as conventional encryption, secret-key, or single-key

a)

True

b)

False

60.

The advantage of a block cipher is that you can reuse keys.

a)

True

b)

False

61.

One desirable property of a stream cipher is that the ciphertext be longer in length than planetext.

a)

True

b)

False

62.

__assures that systems work promptly and service is not denied to authorized users.

a)

Integrity

b)

Availability

c)

System integrity

d)

Data confidentiality

63.

There are clear boundaries between network security and internet security.?

a)

True

b)

False

64.

The security goal that generates the requirement for actions of an entity to be traced unique entity is

a)

Integrity

b)

Availability

c)

Data confidentiality

d)

Accountability

65.

In developing a particular security mechanism or algorithm one must always consider potential a those security features. ?

a)

True

b)

False

66.

The CIA triad embodies the fundamental security objectives for both data and for information an computing services.

a)

Treu

b)

False

67.

The primary advantage of a stream cipher is that stream ciphers are almost always faster and more efficient than block ciphers.

a)

True

b)

False

68.

is a professional membership society with worldwide organizational and individual m that provides leadership in addressing issues that confront the future of the Internet and is the home for the groups responsible for Internet infrastructure standards, including the IETF and

a)

ITU-T

b)

ISO

c)

FIPS

d)

ISOC

69.

The emphasis in dealing with passive attacks is on prevention rather than detection. ?

a)

True

b)

False