CASP Day 5 Questions with Verified Correct
Answers
A software developer is troubleshooting cipher issues and sees the output "ECDHE-
RSA-AES128-GCM-SHA256." Which portion is the part regarding HMAC?
ECDH
RSA
AES128-GCM
SHA256
SHA256
Which of the following does PKI NOT support?
Distribution
Integrity checks
Non-repudiation
Availability
Availability
A system administrator wants to send an email with an attachment through encrypted
means. Which of the following should the sysadmin use?
SSH
API
S/MIME
ECDH
, S/MIME
A security professional is discussing the weaknesses of RC4. An RC4 is an example of
which of the following?
Stream Cipher
Block Cipher
Mode of operation
Hashing
Stream Cipher
A developer is looking for a solution that will provide confidentiality and check its
integrity and authenticity for encrypted plaintext. Which solution should the developer
use?
PFS
ECC
AEAD
AH
AEAD - Authenticated Encryption with Associated Data
A software developer is setting up a symmetric encryption block cipher that uses an
initial chaining vector for the first round of encryption. Which of the following will the
software developer use?
CTR
OFB
Answers
A software developer is troubleshooting cipher issues and sees the output "ECDHE-
RSA-AES128-GCM-SHA256." Which portion is the part regarding HMAC?
ECDH
RSA
AES128-GCM
SHA256
SHA256
Which of the following does PKI NOT support?
Distribution
Integrity checks
Non-repudiation
Availability
Availability
A system administrator wants to send an email with an attachment through encrypted
means. Which of the following should the sysadmin use?
SSH
API
S/MIME
ECDH
, S/MIME
A security professional is discussing the weaknesses of RC4. An RC4 is an example of
which of the following?
Stream Cipher
Block Cipher
Mode of operation
Hashing
Stream Cipher
A developer is looking for a solution that will provide confidentiality and check its
integrity and authenticity for encrypted plaintext. Which solution should the developer
use?
PFS
ECC
AEAD
AH
AEAD - Authenticated Encryption with Associated Data
A software developer is setting up a symmetric encryption block cipher that uses an
initial chaining vector for the first round of encryption. Which of the following will the
software developer use?
CTR
OFB