Safari Books Online is a digital library providing on-demand subscription access to thousands of learning resources.
Who has possession of the private key?
Everyone
Generator of the certificate
CA
Requestor of the certificate
What are the drawbacks of asymmetric encryption? (Choose two.)
Speed
Key length weakness
Expense
Lack of use
What is the main use for asymmetric encryption?
Encrypting large amounts of data
Generating shared secret keys
Encrypting images
VPN data
Who and what possess the public key?
Digital certificate
Holder of the private key
Anyone who requests it
All of the above
Which are examples of asymmetric encryption algorithms? (Choose two.)
AES
CIA
DH
RSA
What are some uses for digital certificates? (Choose two.)
Provide a degree
Verify identity
User authentication
Generate images
What protocol allows for the automatic enrollment of a digital certificate request?
Simple Certificate Enrollment Protocol
Simple Request Enrollment Protocol
Safe Certificate Enrollment Protocol
Same Certificate Enroll Plan
What is the most widely used standard for digital certificates?
X.500
PKCS
X.509
SCEP
If the private key on the Root CA is compromised, what devices have to have their certificate replaced? (Choose all that apply.)
Root CA server
PC with user certificate
Cross-Certify CA
Intermediate CA
CRL server
How many certificates are involved in the user authentication process?
One
Two
Three
Four
It depends
How many prime numbers are used in the Diffie-Hellman algorithm?
One
Two
None
Five
What is the key length of Diffie-Hellman Group 2?
1024-bit
1536-bit
2048-bit
Variable
What components are required for a PKI to be successful? (Choose all that apply.)
Army
Trusted third party
Authority
Secrecy
What are some drawbacks to a single server CA structure? (Choose two.)
Single point of failure
Ease of administration
Not scalable
None of the above
What two technologies make up a PKI?
Digital certificates
Certificate authorities
Digital signatures
Certificate authenticators
What fields in a certificate request should not be abbreviated? (Choose all that apply.)
State
Address
City
Country
The Subject field of a certificate contains what information?
Company information
Usage information
Website name
RA information
What protocol is considered a hybrid encryption protocol?
SSE
SNMP
SMTP
SSH
What are some types of CA servers in a PKI environment? (Choose all that apply.)
Root CA
CRL
RA
ABL