Other Useful Protocols - CompTIA Network+ N10-009 - 1.4 Flashcards

1
Q

ICMP

A

Protocol. “Text message your device.”
Ping command, TTL

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

GRE

A

Generic Routing Encapsulation -
The “tunnel” between two end points
Encapsulates traffic inside of IP
no built in Encryptions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

VPN

A

Protocol that uses a set of rules to transmit data between a device and a VPN server.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

IPSec

A

Protocol that provides level of encryption over a tunnel.
Provides digital signatures in every packet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the two core IPSec protocols

A

Authentication Header (AH), Encapsulation Security Payload (ESP)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Steps before IPSec can send encrypted data across the network

A

Internet Key Exchange (IKE)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Internet Key Exchange (IKE)

A

A Security Association (SA) -
Allows both sides of the convo to agree on the encryption and decryption keys to be used for duration of VPN tunnel -

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are the two phases to key exchange process?

A

Phase 1 Use Diffie-Hellman to create a shared secret key
udp/500
ISAKMP Internet Security Association and Key Management Protocol

Phase 2
Coordinate ciphers used for encryption and key sizes
And Negotiates an inbound and outbound SA for IPsec tunnel

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Phase 2 ISAKMP Tunnel ESP Tunnel

A

Coordinate Ciphers and key sizes
Negotiate an inbound and outbound SA for IPsec

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

ISAKMP tunnel is built at which phase of SA

A

1
UDP/500

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

WHat happens at phase 2 of the IKE

A

Includes encrypted data over ESP tunnel. Gives us foundation to send encrypted data over IPSec tunnel.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

transport mode

A

a IPsec header placed between the data as header and footer. Leaving the original IP header in front.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

tunnel mode

A

original IP header is and data is all encrypted. Given a new IP header and ipsec headers and trailers we saw in transport mode.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which version of IPSec mode gives you the most protection of original data?

A

tunnel

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

AH

A

it validates info you receive over ipsec tunnel. as AH header.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

ESP

A

Encapsulation security payload
Encrypts original data and adds ESP header and trailer to packets.
Encrypts and Authenticates.