Test your basic knowledge |

Comptia Security +: Cryptography

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. An algorithm developed to secure wireless - improperly implemented RC4 - only had a 40 bit key






2. Provides integrity - authentication - and non-repudiation by encrypting a message digest with a private key






3. Data encryption standard derived from IBM Lucifer algorithm - 56-bit key - 64-bit block - uses the Data Encryption Algorithm (DEA)






4. Enciphers fixed-size blocks of bits using substitution and permutation






5. For encrypting web communications - uses Cryptographic Messaging Syntax (CMS) to protect individual message and response






6. Runs on top of TLS on port 443 - protected against MITM attacks and creates secure connections






7. Digital signature standard that uses 2 algorithms: RSA and DSA (based on El Gamal) - both use the Secure Hash Standard (SHA-1)






8. Sender/receiver share the same key - fast - provides confidentiality - key management issue






9. Technique of encapsulating one packet of data within another type to create a secure link of transportation






10. A cryptographic checksum used to provide integrity in symmetric key cryptography






11. Used by WPA - uses RC4 with IV - blocks replay attacks with packet sequence counter - replaced by WPA2






12. A cryptographic protocol that provides security for communications over networks such as the Internet - more secure that SSL






13. Tunneling protocol that merges PPTP with L2F - using port 1701 - is used over UDP - can be combined with IPSec for 5 layered encapsulation






14. Developed to strengthen DES - uses 3 keys (key clustering) to encrypt 3 times






15. Uses symmetric key for integrity and confidentiality (bulk transaction) and asymmetric key for authentication - nonrepudiation - and key exchange






16. Cipher block chaining (CBC) - cipher feedback (CFB) - electronic code book (ECB) and output feedback (OFB)






17. A protocol suite for securing network connections using IKE - AH - and ESP






18. An algorithm developed to secure wireless that uses AES (CCMP + AES)






19. PKI standard






20. DES - 3DES - AES - Twofish - Blowfish - IDEA - Skipjack - RC2 -RC4 - RC5 - RC6






21. Encrypting a message's hash value with a private key - DOES NOT ensure confidentiality






22. Encrypted text - also called cryptogram






23. An internet email standard format specifying how multimedia and attachments are handled






24. Asymmetric cryptography - hashes - and digital signatures provide __________






25. Symmetric cryptography with MAC - asymmetric cryptography - and hashes provide __________






26. Based on use of one private/secret key - does NOT provide authentication or nonrepudiation - uses MAC






27. Provides digests in different lengths including 224 - 256 - 384 - and 512






28. Security enhancement for MIME - provides signed (SHA-1) and encrypted (RSA and Diffe-Helman) email messasges






29. Impossible to find a message - given only message digest - impossible to find 2 messages that produce the same message digest






30. AES Encryption standard used to protect sensitive but ________ - default key 128






31. Selected by NIST for cryptographic hash functions for public use - 160 bit length






32. Mechanism for message authentication that uses one of two algorithms (SHA-1 or MDF5) in combination with a shared secret key - also known as keyed hashing






33. Most widely used asymmetric algorithm - used for digital signatures - key exchange - and encryption






34. Based on two keys - public and private - one-way function: a key cannot decrypt what it encrypts - provides confidentiality - authentication - integrity - and nonrepudiation - Discovered by Diffie and Hellman - also known as public key






35. HMAC stands for...






36. Sequence of bits used in encryption and decryption - also known as cryptovariable






37. Process of transforming ciphertext into plaintext (decipherment)






38. Symmetric cryptography - asymmetric cryptography - and hashes provide __________






39. RSA - Diffie and Hellman - Elliptic Curve (EC) - DSS (Digital Signature Standard) - El Gamal - Merkel-Hellman






40. Altering the form of a message to disguise its meaning






41. Pads messages to a length of 512 bits - then compresses to generate a 128 bit hash value






42. A secure cryptoprocessor embedded in the motherboard used to authenticate a hardware device - TPM stands for






43. Cryptographic algorithm that operates on plaintext - one bit at a time - and enciphers with a random generated "key stream" using substitution






44. PPTP - L2TP - IPSec - and SSH






45. Art of hiding communications - i.e. hide information in graphic files - sound files - or slack space.






46. Developed to replace DES based on Rijndael variable block cipher - has a fixed block length and key lengths: 128 - 192 - or 256 bits






47. Common tunneling protocol integrated in Windows - works well with NAT - maybe blocked at firewall






48. Block and stream






49. Discovering the original message using other than normal means (i.e. "breaking" the cryptosystem)






50. Two different pieces of data have the same hash value