Ch 4

25 July 2022
4.7 (114 reviews)
20 test answers

Unlock all answers in this set

Unlock answers (16)
question
What protocol below supports two encryption modes: transport and tunnel?
answer
IPSec
question
When two individuals trust each other because of the trust that exists between the individuals and a separate entity, what type of trust has been established?
answer
third-party
question
Which of the following certificates are self-signed?
answer
root digital certificates
question
What process will remove all private and public keys along with the user's identification information in the CA?
answer
destruction
question
What term best represents the resiliency of a cryptographic key to attacks?
answer
key strength
question
Which of the following is an enhanced type of domain digital certificate?
answer
extended validation
question
A framework for all of the entities involved in digital certificates for digital certificate management is known as:
answer
public key infrastructure
question
What is a value that can be used to ensure that plaintext, when hashed, will not consistently result in the same digest?
answer
salt
question
What type of trust model has a single CA that acts as a facilitator to interconnect all other CAs?
answer
bridge trust
question
Which of the following is a valid way to check the status of a certificate? (Choose two.)
answer
online certificate status protocol certificate revocation list
question
A user electronically signs a Certificate Signing Request (CSR) by affixing their public key and then sending it to an intermediate certificate authority.
answer
true
question
Stream ciphers work on multiple characters at a time.
answer
False
question
A certificate repository (CR) is a publicly accessible centralized directory of digital certificates.
answer
True
question
A Subject Alternative Name (SAN) digital certificate, is also known as a Unified Communications Certificate (UCC).
answer
True
question
A digital certificate is a technology used to associate a user's identity to a private key.
answer
False
question
Root digital certificates are self-signed.
answer
True
question
Some CAs issue only entry-level certificates that provide domain-only validation.
answer
True
question
Some cryptographic algorithms require that in addition to a key another value can or must be input.
answer
True
question
SSL v3.0 served as the basis for TLS v1.0.
answer
True
question
Digital certificates should last forever.
answer
False