Kerberos and LDAP Flashcards

1
Q

How does Kerberos help prevent MitM and replay attacks?

A

With mutual authentication and time synchronization (or expiration) with tickets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

In which environments is Kerberos used?

A

Unix and Windows AD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which part in Kerberos issues ticket-granting-tickets and other tickets?

A

The Key Distribution Center (KDC) or TGT server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

In Kerberos, why is time synchronization important?

A

In Kerberos, systems must be synchronized within five minutes of each other in order to timestamp tickets to ensure that they expire correctly.

This helps prevent a replay attack, as an attacker has a limited amount of time to use a ticket.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

How does a user in Kerberos receive a resource ticket?

A

The user uses his/her ticket-granting-ticket to receive a ticket to access each resource.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the function of LDAP?

A

Lightweight Directory Access Protocol specifies formats and methods to query directories.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

If an object is identified as “CN=Users,” or “DC=GetCertifiedGetAhead,” which protocol are you using?

A

LDAP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

You need to secure LDAP transmissions. Which protocol do you use?

A

Secure LDAP (establishes connections with TLS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which LDAP standard is current?

A

LDAPv3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

LDAPv2 uses which transport encryption protocol? Which one does LDAPv3 use?

A

LDAPv2 uses SSL, LDAPv3 uses TLS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly