SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Cryptography
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Provides digests in different lengths including 224 - 256 - 384 - and 512
plaintext
NTLM
SHA-2
DSS
2. Unencrypted text - also called cleartext
plaintext
steganography
four modes of DES
AES
3. Asymmetric cryptography - hashes - and digital signatures provide __________
non repudiation
HMAC
whole disk encryption
elliptic curve
4. Tunneling protocol originally used on UNIX - uses port 22 - typically used for remote administration - replaces telnet and FTP
digital signature
four modes of DES
secure hash algorithm
SSH
5. Block and stream
AES
tunneling
symmetric ciphers
DES
6. Cryptographic algorithm that operates on plaintext - one bit at a time - and enciphers with a random generated "key stream" using substitution
stream cipher
transport layer security
IPSec
cipher
7. The cipher considered unbreakable in practice - uses XOR - also called the Vernam cipher
NTLM
SSH
one time pad
hybrid cryptosystem
8. Discovering the original message using other than normal means (i.e. "breaking" the cryptosystem)
cryptanalysis
WPA2
SHA
one time pad
9. Security enhancement for MIME - provides signed (SHA-1) and encrypted (RSA and Diffe-Helman) email messasges
Hash Message Authentication Code
S/MIME
SHA
unclassified data
10. Most efficient algorithm - used for smart cards and cell phones - provides digital signatures - secure key exchange - and encryption
SSH
PG
symmetric key
elliptic curve
11. Symmetric cryptography with MAC - asymmetric cryptography - and hashes provide __________
one time pad
hashing
Message Authentication Code
integrity
12. Data encryption standard derived from IBM Lucifer algorithm - 56-bit key - 64-bit block - uses the Data Encryption Algorithm (DEA)
DES
X.509
MD5
TPM
13. Cipher block chaining (CBC) - cipher feedback (CFB) - electronic code book (ECB) and output feedback (OFB)
four modes of DES
SHA
TPM
TLS
14. Password storage hash for Windows systems after XP - uses MD4 and full unicode character set
block cipher
non repudiation
NTLM
IPSec
15. Based on two keys - public and private - one-way function: a key cannot decrypt what it encrypts - provides confidentiality - authentication - integrity - and nonrepudiation - Discovered by Diffie and Hellman - also known as public key
asymmetric key
DES
unclassified data
HTTPS
16. Symmetric cryptography - asymmetric cryptography - and hashes provide __________
encryption
symmetric key algorithms
cryptanalysis
confidentiality
17. Impossible to find a message - given only message digest - impossible to find 2 messages that produce the same message digest
cipher
TPM
secure hash algorithm
L2TP
18. DES - 3DES - AES - Twofish - Blowfish - IDEA - Skipjack - RC2 -RC4 - RC5 - RC6
S/MIME
cryptography
IPSec
symmetric key algorithms
19. Encrypting all data on a disk using common algorithms (AES) - requires a key (passpharse - USB key) in memory to decrypt disk
symmetric ciphers
SHA-2
whole disk encryption
PG
20. A cryptographic checksum used to provide integrity in symmetric key cryptography
key
Message Authentication Code
encryption
symmetric key algorithms
21. HMAC stands for...
collision
Hash Message Authentication Code
MIME
symmetric key
22. Most widely used asymmetric algorithm - used for digital signatures - key exchange - and encryption
SHA-2
cryptography
RSA
DSS
23. Common tunneling protocol integrated in Windows - works well with NAT - maybe blocked at firewall
hybrid
cryptography
WPA2
PPTP
24. Runs on top of TLS on port 443 - protected against MITM attacks and creates secure connections
four modes of DES
one time pad
ciphertext
HTTPS
25. Developed to replace DES based on Rijndael variable block cipher - has a fixed block length and key lengths: 128 - 192 - or 256 bits
unclassified data
AES
S-HTTP
IPSec
26. Pads messages to a length of 512 bits - then compresses to generate a 128 bit hash value
IPSec
HTTPS
WPA2
MD5
27. An internet email standard format specifying how multimedia and attachments are handled
collision
MIME
steganography
confidentiality
28. Enciphers fixed-size blocks of bits using substitution and permutation
block cipher
confidentiality
S/MIME
elliptic curve
29. For encrypting web communications - uses Cryptographic Messaging Syntax (CMS) to protect individual message and response
IPSec
S-HTTP
RSA
S/MIME
30. An algorithm developed to secure wireless - improperly implemented RC4 - only had a 40 bit key
SSL
block cipher
DSS
wired equivalency privacy
31. Selected by NIST for cryptographic hash functions for public use - 160 bit length
digital signature
MIME
SHA
symmetric key
32. An algorithm developed to secure wireless that uses AES (CCMP + AES)
wired equivalency privacy
S-HTTP
asymmetric key algorithms
WPA2
33. Provides integrity - authentication - and non-repudiation by encrypting a message digest with a private key
digital signature
S/MIME
X.509
Hash Message Authentication Code
34. Has a transport and tunnel mode - tunnel mode is used to create VPN connections
transport layer security
S-HTTP
IPSec
WPA2
35. Developed to strengthen DES - uses 3 keys (key clustering) to encrypt 3 times
digital signature
triple DES
L2TP
PG
36. Digital signature standard that uses 2 algorithms: RSA and DSA (based on El Gamal) - both use the Secure Hash Standard (SHA-1)
PG
SSL
DSS
hashing
37. Altering the form of a message to disguise its meaning
transport layer security
MD5
cryptography
block cipher
38. Used by WPA - uses RC4 with IV - blocks replay attacks with packet sequence counter - replaced by WPA2
PPTP
TKIP
AES
SHA
39. Tunneling protocol that merges PPTP with L2F - using port 1701 - is used over UDP - can be combined with IPSec for 5 layered encapsulation
integrity
encryption
SSL
L2TP
40. Uses symmetric key for integrity and confidentiality (bulk transaction) and asymmetric key for authentication - nonrepudiation - and key exchange
hybrid cryptosystem
unclassified data
plaintext
HTTPS
41. Sequence of bits used in encryption and decryption - also known as cryptovariable
PG
symmetric key algorithms
key
AES
42. Encrypted text - also called cryptogram
IPSec
stream cipher
ciphertext
SHA
43. Protects against removing or installing a bogus hard drive using sealing (measuring system variables - BIOS - boot sector - firmware)
L2TP
TKIP
TPM
symmetric ciphers
44. Allow client/server applcation to communicate in a secure manner across a network - TLS stands for
transport layer security
S/MIME
RSA
S-HTTP
45. A cryptographic communications protocol at the transport layer that provides public key encryption (RSA or Diffie-Helman) - data encryption (IDEA - DES - 3DES) - server authentication - message integrity (MD5 or SHA-1) - and client authentication.
SSL
digital signature
trusted platform module
whole disk encryption
46. Based on use of one private/secret key - does NOT provide authentication or nonrepudiation - uses MAC
symmetric key
cipher
confidentiality
trusted platform module
47. Mechanism for message authentication that uses one of two algorithms (SHA-1 or MDF5) in combination with a shared secret key - also known as keyed hashing
RSA
unclassified data
HMAC
block cipher
48. SHA-1 - MD2/ MD4 - MD5 - Fasthash - Triple DES-MAC - Tiger - and RIPEMD-160
four modes of DES
secure hash algorithms
SHA-2
digital signature
49. Most widely used tunneling protocol - over port 1723 - data carried in an IP tunnel over Generic Routing Encapsulation (GRE)
TPM
asymmetric key algorithms
PPTP
SHA
50. A secure cryptoprocessor embedded in the motherboard used to authenticate a hardware device - TPM stands for
L2TP
SHA
trusted platform module
unclassified data