Week 9 & 10: Digital Certificates Flashcards

1
Q

How is Man in Middle attack prevented with Diffie-Hellman?

A

Bob sends signature and certificate along with g^b.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the point of a digital signature?

A

Verifies authenticity of message with public key

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the difference between a digital signature and a MAC tag?

A

MAC tag is generated using a symmetric key, so it can be regenerated if key is known.

A digital signature is generated using a private key and can be verified with another public key.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the point of the digital certificate?

A

Verifies the identity of the sender by using a third party.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does a digital certificate validate specifically?

A
  • domain validation
  • organization validation
  • extended validation
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

When can a certificate be revoked?

A
  • If expired
  • If company is hacked
  • If CA is hacked
  • If business name is changed
  • If company goes out of business
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the methods to check if certificate is revoked?

A
  1. Download CRL (Certificate Revocation List) and go through it manually
  2. OCSP - Real time look up by contacting CA and asking it
  3. OCSP Stapling - Receive latest time stamped OCSP from server
How well did you know this?
1
Not at all
2
3
4
5
Perfectly