CREST CPSA STUDY UPDATED GUIDE QUESTIONS AND
ANSWERS FIRM A+
✔✔archive, hidden, system, read-only - ✔✔traditionally, in Microsoft Windows, files and
folders accepted four attributes:
✔✔filesystem Access Control List (ACL) - ✔✔a data structure (usually a table)
containing entries that specify individual user or group rights to specific system objects
such as programmes, processes, or files
✔✔encryption - ✔✔transforms data into another format in such a way that only specific
individual(s) can reverse the transformation
✔✔encoding - ✔✔transforms data into another format using a scheme that is publicly
available so that it can easily be reversed
✔✔symmetric encryption - ✔✔uses the same cryptographic keys for both encryption of
plaintext and decryption of ciphertext
✔✔asymmetric encryption - ✔✔uses pairs of keys: public keys which may be
disseminated widely, and private keys which are known only to the owner
✔✔symmetric-key block cipher - ✔✔DES - Data Encryption Standard
✔✔64 bits - ✔✔DES block sizes:
✔✔56 bits - ✔✔DES key sizes:
✔✔symmetric-key block cipher - ✔✔3DES - Triple Data Encryption Standard
✔✔64 bits - ✔✔3DES block sizes:
✔✔168, 112, or 56 bits - ✔✔3DES key sizes:
✔✔symmetric-key block cipher - ✔✔AES - Advanced Encryption Standard
✔✔128 bits - ✔✔AES block sizes:
✔✔128, 192, or 256 bits - ✔✔AES key sizes:
✔✔public-key cryptosystem - ✔✔RSA - Rivest-Shamir-Adleman
✔✔1024 - 4096 bits - ✔✔RSA key sizes:
, ✔✔Secure Hash Algorithm 1 (SHA1) - ✔✔cryptographic hash function which takes an
input and produces a 160-bit hash value known as a message digest - typically
rendered as a hexadecimal number, 40 digits long
✔✔512 bits - ✔✔SHA1 block sizes:
✔✔Message-Digest algorithm (MD5) - ✔✔hash function producing a 128-bit hash value
✔✔512 bits - ✔✔MD5 block sizes:
✔✔message integrity codes - ✔✔a short piece of information used to authenticate a
message - in other words, to confirm that the message came from the stated sender (its
authenticity) and has not been changed
✔✔Hash-based Message Authentication Code (HMAC) - ✔✔a specific type of Message
Authentication Code (MAC) involving a cryptographic hash function and a secret
cryptographic key
✔✔firewall - ✔✔a network security system that monitors and controls incoming and
outgoing network traffic based on predetermined security rules
✔✔firewall - ✔✔often categorised as either network firewalls or host-based firewalls
✔✔network access control list - ✔✔a network filter utilised by routers and some
switches to permit and restrict data flows into and out of network interfaces
✔✔router - ✔✔a networking device that forwards data packets between computer
networks
✔✔switch - ✔✔a computer networking device that connects devices on a computer
network by using packet switching to receive, process, and forward data to the
destination device
✔✔Secure Sockets Layer (SSL) - ✔✔a set of cryptographic protocols designed to
provide communications security over a computer network
✔✔Internet Protocol Security (IPsec) - ✔✔a secure network protocol suite that
authenticates and encrypts the packets of data sent over an Internet protocol network
which is used in Virtual Private Networks (VPNs)
✔✔Secure Shell (SSH) - ✔✔a cryptographic network protocol for operating network
services securely over an unsecured network
ANSWERS FIRM A+
✔✔archive, hidden, system, read-only - ✔✔traditionally, in Microsoft Windows, files and
folders accepted four attributes:
✔✔filesystem Access Control List (ACL) - ✔✔a data structure (usually a table)
containing entries that specify individual user or group rights to specific system objects
such as programmes, processes, or files
✔✔encryption - ✔✔transforms data into another format in such a way that only specific
individual(s) can reverse the transformation
✔✔encoding - ✔✔transforms data into another format using a scheme that is publicly
available so that it can easily be reversed
✔✔symmetric encryption - ✔✔uses the same cryptographic keys for both encryption of
plaintext and decryption of ciphertext
✔✔asymmetric encryption - ✔✔uses pairs of keys: public keys which may be
disseminated widely, and private keys which are known only to the owner
✔✔symmetric-key block cipher - ✔✔DES - Data Encryption Standard
✔✔64 bits - ✔✔DES block sizes:
✔✔56 bits - ✔✔DES key sizes:
✔✔symmetric-key block cipher - ✔✔3DES - Triple Data Encryption Standard
✔✔64 bits - ✔✔3DES block sizes:
✔✔168, 112, or 56 bits - ✔✔3DES key sizes:
✔✔symmetric-key block cipher - ✔✔AES - Advanced Encryption Standard
✔✔128 bits - ✔✔AES block sizes:
✔✔128, 192, or 256 bits - ✔✔AES key sizes:
✔✔public-key cryptosystem - ✔✔RSA - Rivest-Shamir-Adleman
✔✔1024 - 4096 bits - ✔✔RSA key sizes:
, ✔✔Secure Hash Algorithm 1 (SHA1) - ✔✔cryptographic hash function which takes an
input and produces a 160-bit hash value known as a message digest - typically
rendered as a hexadecimal number, 40 digits long
✔✔512 bits - ✔✔SHA1 block sizes:
✔✔Message-Digest algorithm (MD5) - ✔✔hash function producing a 128-bit hash value
✔✔512 bits - ✔✔MD5 block sizes:
✔✔message integrity codes - ✔✔a short piece of information used to authenticate a
message - in other words, to confirm that the message came from the stated sender (its
authenticity) and has not been changed
✔✔Hash-based Message Authentication Code (HMAC) - ✔✔a specific type of Message
Authentication Code (MAC) involving a cryptographic hash function and a secret
cryptographic key
✔✔firewall - ✔✔a network security system that monitors and controls incoming and
outgoing network traffic based on predetermined security rules
✔✔firewall - ✔✔often categorised as either network firewalls or host-based firewalls
✔✔network access control list - ✔✔a network filter utilised by routers and some
switches to permit and restrict data flows into and out of network interfaces
✔✔router - ✔✔a networking device that forwards data packets between computer
networks
✔✔switch - ✔✔a computer networking device that connects devices on a computer
network by using packet switching to receive, process, and forward data to the
destination device
✔✔Secure Sockets Layer (SSL) - ✔✔a set of cryptographic protocols designed to
provide communications security over a computer network
✔✔Internet Protocol Security (IPsec) - ✔✔a secure network protocol suite that
authenticates and encrypts the packets of data sent over an Internet protocol network
which is used in Virtual Private Networks (VPNs)
✔✔Secure Shell (SSH) - ✔✔a cryptographic network protocol for operating network
services securely over an unsecured network