ITN 260 MIDTERM PRACTICE EXAM-
REALISTIC QUESTIONS AND
ANSWERS
What is the latest version of the Secure Hash Algorithm? - Answer-SHA-3
Which of these is the strongest symmetric cryptographic algorithm? - Answer-Advanced
Encryption Standard
The Hashed Message Authentication Code (HMAC) _____. - Answer-hashes the key
and the message
Which of these has an onboard key generator and key storage facility, as well as
accelerated symmetric and asymmetric encryption, and can back up sensitive material
in encrypted form? - Answer-Hardware Security Module (HSM)
Which of these is NOT a basic security protection for information that cryptography can
provide? - Answer-risk loss
Egor wanted to use a digital signature. Which of the following benefits will the digital
signature not provide? - Answer-verify the receiver
What is data called that is to be encrypted by inputting it into a cryptographic algorithm?
- Answer-plaintext
A(n) _____ is not decrypted but is only used for comparison purposes. - Answer-digest
Alexei was given a key to a substitution cipher. The key showed that the entire alphabet
was rotated 13 steps. What type of cipher is this? - Answer-ROT13
A digital certificate associates _____ - Answer-the user's identity with his public key
Which statement is NOT true regarding hierarchical trust models? - Answer-It is
designed for use on a large scale.
What is a value that can be used to ensure that hashed plaintext will not consistently
result in the same digest - Answer-salt
Which of the following block ciphers XORs each block of plaintext with the previous
block of ciphertext before being encrypted? - Answer-Cipher Block Chaining (CBC)
, Digital certificates can be used for each of these EXCEPT _____. - Answer-to verify the
authenticity of the Registration Authorizer
What entity calls in crypto modules to perform cryptographic tasks? - Answer-Crypto
service provider
Public key infrastructure (PKI) _____. - Answer-is the management of digital certificates
is a protocol for securely accessing a remote computer. - Answer-Secure Shell (SSH)
A centralized directory of digital certificates is called a(n) _____. - Answer-Certificate
Repository (CR)
are symmetric keys to encrypt and decrypt information exchanged during the session
and to verify its integrity. - Answer-Session keys
An entity that issues digital certificates is a _____. - Answer-Certificate Authority (CA)
_____ refers to a situation in which keys are managed by a third party, such as a
trusted CA. - Answer-Key escrow
The strongest technology that would assure Alice that Bob is the sender of a message
is a(n) _____. - Answer-digital certificate
Which of these is considered the strongest cryptographic transport protocol? - Answer-
TLS v1.2
Which of the following is NOT a method for strengthening a key? - Answer-Variability
Which digital certificate displays the name of the entity behind the website? - Answer-
Extended Validation(EV) Certificate
Which of these is NOT part of the certificate life cycle? - Answer-authorization
Which trust model has multiple CAs, one of which acts as a facilitator? - Answer-Bridge
A(n) _____ is a published set of rules that govern the operation of a PKI. - Answer-
certificate policy (CP)
_____ performs a real-time lookup of a digital certificate's status. - Answer-Online
Certificate Status Protocol (OCSP)
Attackers who register domain names that are similar to legitimate domain names are
performing _____ - Answer-URL hijacking
REALISTIC QUESTIONS AND
ANSWERS
What is the latest version of the Secure Hash Algorithm? - Answer-SHA-3
Which of these is the strongest symmetric cryptographic algorithm? - Answer-Advanced
Encryption Standard
The Hashed Message Authentication Code (HMAC) _____. - Answer-hashes the key
and the message
Which of these has an onboard key generator and key storage facility, as well as
accelerated symmetric and asymmetric encryption, and can back up sensitive material
in encrypted form? - Answer-Hardware Security Module (HSM)
Which of these is NOT a basic security protection for information that cryptography can
provide? - Answer-risk loss
Egor wanted to use a digital signature. Which of the following benefits will the digital
signature not provide? - Answer-verify the receiver
What is data called that is to be encrypted by inputting it into a cryptographic algorithm?
- Answer-plaintext
A(n) _____ is not decrypted but is only used for comparison purposes. - Answer-digest
Alexei was given a key to a substitution cipher. The key showed that the entire alphabet
was rotated 13 steps. What type of cipher is this? - Answer-ROT13
A digital certificate associates _____ - Answer-the user's identity with his public key
Which statement is NOT true regarding hierarchical trust models? - Answer-It is
designed for use on a large scale.
What is a value that can be used to ensure that hashed plaintext will not consistently
result in the same digest - Answer-salt
Which of the following block ciphers XORs each block of plaintext with the previous
block of ciphertext before being encrypted? - Answer-Cipher Block Chaining (CBC)
, Digital certificates can be used for each of these EXCEPT _____. - Answer-to verify the
authenticity of the Registration Authorizer
What entity calls in crypto modules to perform cryptographic tasks? - Answer-Crypto
service provider
Public key infrastructure (PKI) _____. - Answer-is the management of digital certificates
is a protocol for securely accessing a remote computer. - Answer-Secure Shell (SSH)
A centralized directory of digital certificates is called a(n) _____. - Answer-Certificate
Repository (CR)
are symmetric keys to encrypt and decrypt information exchanged during the session
and to verify its integrity. - Answer-Session keys
An entity that issues digital certificates is a _____. - Answer-Certificate Authority (CA)
_____ refers to a situation in which keys are managed by a third party, such as a
trusted CA. - Answer-Key escrow
The strongest technology that would assure Alice that Bob is the sender of a message
is a(n) _____. - Answer-digital certificate
Which of these is considered the strongest cryptographic transport protocol? - Answer-
TLS v1.2
Which of the following is NOT a method for strengthening a key? - Answer-Variability
Which digital certificate displays the name of the entity behind the website? - Answer-
Extended Validation(EV) Certificate
Which of these is NOT part of the certificate life cycle? - Answer-authorization
Which trust model has multiple CAs, one of which acts as a facilitator? - Answer-Bridge
A(n) _____ is a published set of rules that govern the operation of a PKI. - Answer-
certificate policy (CP)
_____ performs a real-time lookup of a digital certificate's status. - Answer-Online
Certificate Status Protocol (OCSP)
Attackers who register domain names that are similar to legitimate domain names are
performing _____ - Answer-URL hijacking