IPSec and TLS, Wireless and Mobile Security, Web Security Flashcards
In IPSec, packets can be protected using ESP or AH but not both at the same time.
False
In IPSec, if A uses DES for traffic from A to B, then B must also use DES for traffic from B to A.
False
In IPSec, the sequence number is used for preventing replay attacks.
True
Most browsers come equipped with SSL and most Web servers have implemented the protocol.
True
Even web searches have (often) been in HTTPS.
True
In a wireless network, traffic is broadcasted into the air, and so it is much easier to sniff wireless traffic compared with wired traffic.
True
Compared with WEP, WPA2 has more flexible authentication and stronger encryption schemes.
True
iOS has no vulnerability.
False
In iOS, each file is encrypted using a unique, per-file key.
True
In iOS, an app can run its own dynamic, run-time generated code.
False
The App Store review process can guarantee that no malicious iOS app is allowed into the store for download
False
In iOS, each app runs in its own sandbox
True
In Android, all apps have to be reviewed and signed by Google.
False
In Android, an app will never be able to get more permission than what the user has approved.
False
Since Android is open-source, each handset vendor can customize it, and this is good for security (hint: consider security updates).
False