3.1 Krypto Flashcards
Hashing
HAVAL 128,160,192,224,256 HMAC variabel MD2 128 MD4 128 MD5 128 SHA1 160 SHA2 224,256,384,512 SHA3 224,256,384,512
PGP commercial
RSA key exchange
IDEA encryption
MD5 hashing
PGP freeware
DH key exchange
CAST-128 encryption
SHA1 hashing
S/MIME
RSA key exchange
AES/3DES encryption -> HYBRID
uses X.509, PKI
IPSEC
Authentication Header: provides integrity, authentication and non-repudiation, access control, prevents replay attacks, acts as a digital signature
Encapsulating Security Payload ESP provides confidentiality (and optionally integrity/authentication), prevents replay attacks
Security Association SA (roadie): 4 SAs for bidirectional communications with AH and ESP
ISAKMP: Internet Security Assicoation and Key Management Protocol: creates and manages SAs (authenticate, key generation)
tunnel mode is required for X-gateway!
AH+ESP in transport mode because headers are not encrypted
only ESP in tunnel mode because headers are encrpyted
WLAN
WEP: 64/128
WPA: uses TKIP
WPA2: adds AES
IDEA
Block 64
Key 128
uses ECB, CBC, CFB, OFB, CTR
Blowfish
Block 64
Key 32-448
much faster than IDEA and DES, license free
Skipjack
Block 64
Key 80
ECB, CBC, OFB, CTR
key escrow at NIST
AES
Block 128
Key: 128,192,256
10/12/24 rounds
Twofish
Block 128
Key: 1-256
DES
Block 64 Key 64 (effectively 56)
3DES
Block 64
Key 112/168 (3x56 bit keys possible)
RC2
Block 64
Key 128
RC4
Streaming Cipher!
Key 128