PKI Flashcards

1
Q

a trusted third party that issues digital certificates for creating digital signature and public-private key pairs

A

CA

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

used to store a binary representation of a digital certificate

A

DER

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

allows multiple domains to be protected by a single certificate

A

SAN (Subject Alternative Name) certificate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

certificate type that allows multiple subdomains to be protected by a single certificate

A

Wildcard certificate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

verifying the authenticity of a newly received cert by checking all of the certs in the chain of certs from a trusted root CA, through intermediate CAs, down to the certificate issued to the end user

A

Certificate chaining

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

security mechanism that allows HTTPS websites to resist impersonation by attackers using fraudulent certificates

A

HPKP (HTTP Public Key Pinning)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

allows for checking digital certificate revocation status without contacting CA. Fastest way to validate digital certificate

A

OCSP stapling

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

method for requesting digital cert

A

CSR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

allow to check whether a digital cert has been revoked

A

CRL & OCSP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

digital cert formats commonly used to store private keys

A

PFX & P12

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

most common format in which CAs issue certs

A

PEM

How well did you know this?
1
Not at all
2
3
4
5
Perfectly