Dion - Security Protocols pg97 Flashcards

1
Q

What is S/MIME?

A

Secure/Mulitpurpose Internet Mail Extensions

  • A standard that provides cryptographic security for email!
  • Public Key encryption and digital signing
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is SRTP?

A

Secure Real-Time Transport Protocol is for phone calls or video calls.

Uses AES encryption
Uses HMAC-SHA-1 hashing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is NTP?

A

Network Time Protocol

  • around since 1985
  • vulnerable to DDoS

Trying to make NTPsec, in development since 2015

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is Secure POP and Secure IMAP?

A

Email security for POP3 or IMAP

  • Uses STARTTLS to add SSL to POP3
  • Secure IMAP is IMAP with SSL
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is SSL/TLS?

A

Secure Sockets Layer
Transport Layer Security (the new version!)

HTTPS (Port 443) uses TLS or SSL

For all internet communications - browsing, IM, email, VoIP etc

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How does SSL/TLS work?

A

Use public key encryption

  • Private key on the server
  • Symmetric session key is transferred using asymmetric encryption
  • Very fast and secure
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is FTPS?

A

FTP over SSL

FTP - File Transfer Protocol

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is SFTP?

A

SSH File Transfer Protocol

Provides file system functionality
Resume interrupted transfers
Remote file removal

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is LDAP?

A

Lightweight Directory Access Protocol

  • A database reading and writing directories over an IP network.
  • Uses X.500 standard from ITU “International Telecoms Union”
  • Microsoft’s Active Directory, Apple’s OpenDirectory
  • Unencrypted Port 389
  • Encrypted Port 636
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is the more secure version of LDAP?

A

LDAPS - LDAP Secure
or implement
SASL - Simple Authentication and Security Layer
Which adds 2 way authentication - eg. Kerberos (Port 88)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is SSH?

A

Secure Shell - Port 22
Encrypted terminal communication between two computers or network devices.

Requires one device to be a server and the other a client

Replaces Telnet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is SSH 2.0?

A

Uses Diffie-Hellman key exchange and MACs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is DNSSEC?

A

Domain Name System Security Extensions
Prevents DNS poisoning

Validates DNS responses
DNS - Port 53

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is SNMP? What is the secure version?

A

Simple Network Management Protocol
Port 161 UDP

Use SNMPv3 for better security - encrypted and authentication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is DHCP?

A

Dynamic Host Configuration Protocol
NOT secure.

Used to automatically allocate IP addresses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is a VPN?

A

Virtual Private Network

Secure connection between 2+ computers that aren’t on the same network

17
Q

What is PPTP?

A

A VPN Protocol!

Point-to-Point Tunneling protocol - Port 1723

Protocol that encapsulates and encrypts PPP packets.

Uses CHAP-based authentication which is vulnerable.

18
Q

What is L2TP?

A

A VPN Protocol!

Layer 2 Tunneling Protocol - Port 1701

Connection between 2+ computers that aren’t on the same network.

Usually paired with IPSec to provide security

19
Q

What is IPSec?

A

A VPN Protocol!

Internet Protocol Security

A TCP/IP protocol that authentications and encrypts IP packets.

Uses hashing and key exchange.

20
Q

What is IKE?

A

Internet Key Exchange

Method used by IPSec to create a secure tunnel between authenticated peers.

21
Q

What is AH?

A

Authentication Header Protocol

Used in IPSec and provides integrity and authentication

22
Q

What is ESP?

What are the two modes?

A

Encapsulation Security Payload

Encapsulated and encrypts packets
Two Modes:

  1. Transport Mode: Host to host - payload is encrypted, not header, best for private networks.
  2. Tunnel Mode: Entire packet is encrypted - best transmission with different networks