Public Key Infrastructure Flashcards

1
Q

Certificate

A

Digitally signed electronic documents that bind a public key with a users identity.

X.509 - PKI standard that often uses Single Sign On (SSO) authentication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Certificate authority (CA)

A

The entity that issues certificates to users. It is a 3rd party that negotiates the security of the connection between you and your website.

Also responsible for verifying the identity of the recipient of the certificate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

mapping

A

It’s one to one mapping if an individual certificate is mapped to a recipient

It’s many to one mapping if multiple certificates are mapped to a recipient

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Registration authority

A

Used to verify requests for certificates.

If the request is valid the RA tells the CA to issue the certificate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Certificate revocation list (CRL)

A

A list of certificates that are no longer valid or have been revoked by the user

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Online Certificate Status Protocol (OCSP)

A

Alternative to CRL but contains less information

It doesn’t require encryption so it’s less secure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Key escrow

A

A secure copy of a users private key is held just Incase it is lost.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Key recovery agent

A

Allows the restoration of keys If they are lost or corrupted

This has to be set up on windows server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly