Security Protocols Flashcards

1
Q

S/MIME

A

Secure/Multipurpose Internet Mail Extensions:
A standard that provides cryptographic security for electronic messaging

Authentication & Integrity

Non-repudiation

S/MIME can encrypt emails and their contents …including malware

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Downgrade Attack

A

A protocol is tricked into using a lower quality version of itself instead of a higher quality version

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

SSL/TLS: Break & Inspect

A

Utilizes a proxy to capture data and inspect it before downloading it

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

PPTP

A

Point to Point Tunneling Protocol:
A protocol that encapsulates PPP packets and ultimately sends data as encrypted traffic

PPTP can use CHAP-based authentication, making it vulnerable to attacks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

L2TP

A

Layer 2 Tunneling Protocol:
A connection between two or more computers or devices that are not on the same private network

L2TP is usually paired with IPSec to provide security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

IPSec

A

A TCP/IP protocol that authenticates and encrypts IP packets and effectively securing communications between computers and devices using this protocol

IPSec provides confidentiality (encryption), integrity (hashing), and authentication (key exchange)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

IKE

A

Internet Key Exchange:

Method used by IPSec to create a secure tunnel by encrypting the connection between authenticated peers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

SA

A

Security Association:

Establishment of secure connections and shared security information using certificates or cryptographic keys

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

AH

A

Authentication Header:

Protocol used in IPSec that provides integrity and authentication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

ESP

A

Encapsulating Security Payload:

Provides integrity, confidentiality, and authenticity of packets by encapsulating and encrypting them

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

IPSec: Transport Mode

A

Host-to-host transport mode only uses encryption of the payload of an IP packet but not its header

Transport mode is used for transmission between hosts on a private network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

IPSec: Tunnel Mode

A

A network tunnel is created which encrypts the entire IP packet (payload and header)

Tunnel mode is commonly used for transmission between networks

Site-to-site VPNS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly