SSL/ TLA Flashcards

1
Q

How is a MITMA countermeasured

A

SSL TLS uses digital certificates to authenticate the server

Client verifies the certificate to ensure it is communicating with the legitimate server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

How is a replay attack countermeasured

A

SSL TLS includes unique randomly generated nonces in the handshake process

These nonces ensure each session is unique and prevent an attacker from replaying old handshakes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How is a brute force attack countermeasured

A

SSL TLS uses secure encryption algorithms and sufficiently long key sizes to make brute force attacks computationally infeasible

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

How is IP spoofing countermeasured

A

SSL TLS requires cryptographic handshake between the client and the server making IP address based spoofing ineffective

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Suitable key management approach for a company with <50 users

A

Public key infrastructure PKI with centralised certificate authority

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Reasons for the padding field in ESP

A

Alignment to block cipher size. Padding ensures that the payload aligns correctly.

Protection against traffic analysis. - by adding random padding ESP prevents attackers from inferring information based on packet length enhancing confidentiality

How well did you know this?
1
Not at all
2
3
4
5
Perfectly