Higher Level Security Protocols Flashcards
1
Q
What is PGP (Pretty Good Privacy)?
A
A security service for email and file storage applications
2
Q
What are the basics of PGP?
A
- provides confidentiality, integrity, authentication, and non-repudiation for email and files
- runs on a variety of platforms and can be integrated into a variety of mail systems
- two types of encryption are used (RSA, and a secret key - 3DES, IDEA, CAST128)
- each time an email message is sent, a new secret key is randomly generated at the sender site
3
Q
What is SET (Secure Electronic Transaction)
A
- Designed to provide secure credit card transactions over the Internet
- Initiated by MasterCard and Visa and developed by IBM
- Provides confidentiality of cardholder account and payment information
- Provides integrity of the order information, personal information, and payment instructions
- provides cardholder account authentication
- provides merchant authentication
4
Q
What is a dual signature?
A
Purpose of dual signature is to link two messages that are intended for two different recipients:
- order information must be verified by the merchant
- payment information must be verified by the issuer