Test your basic knowledge |

CISSP Crypto Domain

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Rearrances the bits characters or character blocks






2. variable block and key sizes 128; 192; 256; uses a variable number of rounds; has low memory requirements; easy to defend against timing attacks; implemented in software; hardware is costly.






3. Setting policies; protecting keys; key recovery; responding to key compromise; keys long enough to prevent attack; cryptoperiod: key lifetimes






4. Attmpts to conceal data by hiding it; Used by placing information in objectssuch as graphics; sound files or document headers






5. Function that takes a variable length string; and compresses and transforms it into a fixed length- output called a hash or message digest






6. Stream cipher; stream algorithm works one bit at a time usually done in Hardware; no memory required; very fast; block cipher; works on blocks of bits; transforms into fixed length blocks; encrypted block by block 64; 128; 256 uses substitution and t






7. Malled online encryption or traffic flow security- implemented in hardware' encrypts all traffic in a single path






8. Different keys for encryption and decryption; two keys private and public Encrypt with private- unencrypt with privateor encrypt with public- decrypt with private. Use of private ensures non repudiation; without confidentiality-becomes the digital si






9. Caesar cipher - scytale - Blaise de vigenere - vernam cipher






10. Prove knowledge of a fact to a third party without revealing the fact itself






11. Binary operation that adds bits together; plaintext is XORed with a random keystream to generate cyphertext






12. Operates on bits - higher speed - usually implemented in hardware.






13. Data Encryption Standard (DES) 5 Block Modes; Trple DES runs through it three times; Blowfish; IDEA; RC4; RC5






14. Set of mathmatical rules used in encryption






15. DES - 3des - aes - idea - two fish - rc4 - blow fish






16. RC(x) - 32 - 64 - 128 bit blocks - key max at 2048 bits






17. Mathematical operation performed several times on the same message block






18. Prevent disclosure - privacy






19. Rives Shamir; adleman- based on factoring of large prime numbers-encrypt-dig sig- and key exchange variable key length 512 to 4096- strong but slow; 100 times slower than software; 1000-10000 slower than hardware encryption






20. Spartans - wrapped around rod.






21. Hash Mess Auth Code (512bit MD5; SHA-1); calculated using a hash function with secret key- shared key appended to data shared faster than DES CBC- used in IPSEC SSL/TLS and SSH






22. One key - only confidentiality






23. Advanced Encryption Standard - replaced DES - Rijndael based - 128 - 192 - and 256 bit keys/blocks with 10 - 12 - 14 rounds resp.






24. Block based - Previous block seeds next blocks key






25. Block based - adds padding - same key - same clear = same ciphertext






26. Advanced Encryption Standard






27. Easily transportable;cannot be initiated by something else; can be automatically time stamped;provides integrity by encrypting hash value;hash value generated with senders private key






28. Formula is public; used to creat checksums; message digests; or integrity check values






29. Simple substitution - ROT-n - mono-alphabetical.






30. Similar to RSA - very efficient for low end hardware/limited processing power.






31. Instance when two keys keys generate the same ciphertext from same plaintext






32. Relies on finding weaknesses in the hashing algorithm






33. 64 bit blocks of data; variable key lengths






34. Online Certificate Status Protocol- used to query the CA; useful in large; complex environments; responds to a query with status of valid; suspended; or revoked






35. Data Encryption Standard - 64 bit blocks - 56 bit key - 16 rounds - 4 modes






36. Provided by mixing up the location of plaintext throughout the cipher






37. Uses asymmetric to figure out a key - symmetric used for large data encryption.






38. Cannot deny ownership / origination.






39. Secret; single; conventional; session; shared; private






40. Hides data in images - usually by LSB (least significant bit)






41. Keys needed to decrypt cyphertext so an authorized third party can gain access






42. Used with keys; do not need to be encypted; required to prevent defeat of keyspace through pattern analysis






43. First public key algorithm; not used for message encrypt or digital signatures; uses large prime numbers; requires both sender and reciever to have key pairs; vulnerable to man in the middle attacks






44. Authentication and integrity - needed when... At rest and in transit.






45. Based on Dif Hel; provides encrypt; dig sig; and key exchange; discrete logarithms-easy to reverse engineer; main drawback is performance- slower than other algorithms






46. One time pad - random key - one use - unbreakable






47. Study of both cryptography and cryptanalysis






48. RSA






49. Replaces bits characters and block s with differecnt values






50. Data in readable format- red side