Test your basic knowledge |

Comptia Security +: Cryptography

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Unencrypted text - also called cleartext






2. Runs on top of TLS on port 443 - protected against MITM attacks and creates secure connections






3. Most efficient algorithm - used for smart cards and cell phones - provides digital signatures - secure key exchange - and encryption






4. Free email security program that uses several algorithms - symmetric (IDEA) - asymmetric (RSA) and hashes (SHA1) and the web of trust






5. A cryptographic protocol that provides security for communications over networks such as the Internet - more secure that SSL






6. Asymmetric cryptography - hashes - and digital signatures provide __________






7. Digital signature standard that uses 2 algorithms: RSA and DSA (based on El Gamal) - both use the Secure Hash Standard (SHA-1)






8. Most widely used tunneling protocol - over port 1723 - data carried in an IP tunnel over Generic Routing Encapsulation (GRE)






9. Has a transport and tunnel mode - tunnel mode is used to create VPN connections






10. The cipher considered unbreakable in practice - uses XOR - also called the Vernam cipher






11. Process of transforming ciphertext into plaintext (decipherment)






12. Allow client/server applcation to communicate in a secure manner across a network - TLS stands for






13. Data encryption standard derived from IBM Lucifer algorithm - 56-bit key - 64-bit block - uses the Data Encryption Algorithm (DEA)






14. For encrypting web communications - uses Cryptographic Messaging Syntax (CMS) to protect individual message and response






15. Mechanism for message authentication that uses one of two algorithms (SHA-1 or MDF5) in combination with a shared secret key - also known as keyed hashing






16. PKI standard






17. Password storage hash for Windows XP - separates password into two 7 character parts and converts to upper case






18. AES Encryption standard used to protect sensitive but ________ - default key 128






19. Developed to strengthen DES - uses 3 keys (key clustering) to encrypt 3 times






20. Developed to replace DES based on Rijndael variable block cipher - has a fixed block length and key lengths: 128 - 192 - or 256 bits






21. Discovering the original message using other than normal means (i.e. "breaking" the cryptosystem)






22. A cryptographic checksum used to provide integrity in symmetric key cryptography






23. HMAC stands for...






24. Block and stream






25. Encryption standard broken in 1998 - has a relatively short key length






26. Enciphers fixed-size blocks of bits using substitution and permutation






27. Symmetric cryptography with MAC - asymmetric cryptography - and hashes provide __________






28. Process of transforming plaintext into unreadable format






29. Based on two keys - public and private - one-way function: a key cannot decrypt what it encrypts - provides confidentiality - authentication - integrity - and nonrepudiation - Discovered by Diffie and Hellman - also known as public key






30. A protocol suite for securing network connections using IKE - AH - and ESP






31. PGP and SSH






32. Provides digests in different lengths including 224 - 256 - 384 - and 512






33. A special mathematical function that peforms one way encryption - popular algorithms are SHA and MD - used to verify message/file integrity and passwords






34. A cryptographic communications protocol at the transport layer that provides public key encryption (RSA or Diffie-Helman) - data encryption (IDEA - DES - 3DES) - server authentication - message integrity (MD5 or SHA-1) - and client authentication.






35. Two different pieces of data have the same hash value






36. An internet email standard format specifying how multimedia and attachments are handled






37. Tunneling protocol originally used on UNIX - uses port 22 - typically used for remote administration - replaces telnet and FTP






38. SHA-1 - MD2/ MD4 - MD5 - Fasthash - Triple DES-MAC - Tiger - and RIPEMD-160






39. Encrypted text - also called cryptogram






40. Altering the form of a message to disguise its meaning






41. Selected by NIST for cryptographic hash functions for public use - 160 bit length






42. Method of encryption and decryption






43. Cipher block chaining (CBC) - cipher feedback (CFB) - electronic code book (ECB) and output feedback (OFB)






44. Sequence of bits used in encryption and decryption - also known as cryptovariable






45. PPTP - L2TP - IPSec - and SSH






46. Art of hiding communications - i.e. hide information in graphic files - sound files - or slack space.






47. Most widely used asymmetric algorithm - used for digital signatures - key exchange - and encryption






48. Encrypting all data on a disk using common algorithms (AES) - requires a key (passpharse - USB key) in memory to decrypt disk






49. Technique of encapsulating one packet of data within another type to create a secure link of transportation






50. Common tunneling protocol integrated in Windows - works well with NAT - maybe blocked at firewall