Test your basic knowledge |

CISSP Crypto Domain

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Monsidered unbreakable- each pad made up of truly random values; used once; securely distributed- protected at sender and reciever sites






2. A specific proceedure






3. Encrypted data-black side






4. Caesar cipher - scytale - Blaise de vigenere - vernam cipher






5. Authentication and integrity - needed when... At rest and in transit.






6. Simple substitution - ROT-n - mono-alphabetical.






7. Cert Revocation List- identifies Certs that are no longer recognized; maintained and updated periodically; Browsers use OCSP for updates.






8. Relies on finding weaknesses in the hashing algorithm






9. Set of mathmatical rules used in encryption






10. Keys needed to decrypt cyphertext so an authorized third party can gain access






11. Integrity






12. Pro's: key management cons: speed/file size






13. First public key algorithm; not used for message encrypt or digital signatures; uses large prime numbers; requires both sender and reciever to have key pairs; vulnerable to man in the middle attacks






14. 32 to 448 bit key - Schneier






15. 128 bit digest






16. Published document describing: howa CA is structured;which standards are used and how certs are managed






17. Instance when two keys keys generate the same ciphertext from same plaintext






18. NIST 1991 - outlines authorized algorithms






19. Spartans - wrapped around rod.






20. Formula is public; used to creat checksums; message digests; or integrity check values






21. Hash Mess Auth Code (512bit MD5; SHA-1); calculated using a hash function with secret key- shared key appended to data shared faster than DES CBC- used in IPSEC SSL/TLS and SSH






22. key storage;escrow;archival;recovery agend;multiple key pairs






23. Carlisle Adams and Stafford Tavares; CAST 128 64 bit block cipher-uses keys between 48 and 128 bit lengths 12 to 16 rounds of operations CAST 256 uses 48 rounds; of 128; 192; 160; 224; 256






24. Certificate Authority; registration authority offloads work; validates identity; distributes key; certificate server maintains repository that stores certificates






25. Advanced Encryption Standard - replaced DES - Rijndael based - 128 - 192 - and 256 bit keys/blocks with 10 - 12 - 14 rounds resp.






26. Rearrances the bits characters or character blocks






27. Numeric seeding value used to with a symmetric key to provide randomness






28. Block based - Previous block seeds next blocks key






29. Message Authentication Code - Symmetric enc + Hash






30. First public key exchange system - users exchange keys over insecure medium.






31. Hardware - software - and policies (security association) -






32. Public algorithm - private key.






33. Mathematical operation performed several times on the same message block






34. Data Encryption Standard - 64 bit blocks - 56 bit key - 16 rounds - 4 modes






35. Rearranges bits or bytes






36. Authenticity - integrity - digital signatures - storing passwords.






37. Stream cipher; stream algorithm works one bit at a time usually done in Hardware; no memory required; very fast; block cipher; works on blocks of bits; transforms into fixed length blocks; encrypted block by block 64; 128; 256 uses substitution and t






38. Electronic Code Book Each block encrypted independently; 64 bits at a time; using same key; given message; always same ciphertext; susceptible to plaintext attack






39. Placementof a secret copy in a secure location






40. Measar cipher






41. 1996 - crypto is protected in agreement.






42. Prove knowledge of a fact to a third party without revealing the fact itself






43. International Data Enc Algorithm - 64 bit block - 128 bit key






44. Broken






45. Single authority trust; heirarchal trust; web of trust; hybrid cross certificationusesd in businesses to trust each others CA's; and DISA Model Root; intermediate; leaf at the local levels






46. Asymmetric enc + Hash - validity of message - non repudiation






47. When a hash fuunction generates same output for same input






48. Buries a message by taking the least significant bit of evvery byte to carry the message; hide a message in another message. Graphics; sound files; alternated used in corporate espionage






49. Has authority to remove keys from escrow;






50. Process of properly destroying keys at end of userful loife