sec 571 week 8 final exam latest summer fall sessi
Connected book
Book Title:
Author(s):
Edition:
ISBN:
Edition:
Written for
SEC 571
All documents for this subject (5)
Seller
Follow
knoowy96
Content preview
SEC 571 Week 8 Final Exam LATEST SUMMER FALL
SESSION GRADED A (GUARANTEED PASS)
SRTP - ANSWER: Secure Real-Time Transport Protocol-Used to provide secure VoIP.
Uses AES for encryption. Authentication, integrity, and replay protection. HMAC-
SHA1 for authentication.
SIP - ANSWER: Session Initiation Protocol. effective voice/video session control
NTP - ANSWER: Network Time Protocol. No security features, exploited as amplifiers
in DDoS, authenticated with TLS
UC - ANSWER: Unified Communications. Like Zoom
VTC - ANSWER: Video Teleconferencing
S/MIME - ANSWER: Secure/Multipurpose Internet Mail Extensions. Used to sign and
encrypt messages. Required PKI
POPv3 - ANSWER: Secure Post Office Protocol v 3. Client downloads mail- not stored
on server. Use STARTTLS extension to encrypt with SSL
IMAP - ANSWER: Internet Message Access Protocol. Mail stored on server. Use
STARTTLS extension to encrypt with SSL
SSL/TLS - ANSWER: TLS 1.1 improved cypher suite negotiation. TLS 1.2 supports SHA-
256
SSL least secure. SSL 2.0 deprecated. SSL 3.0 (best)
Secure Sockets layer / Transport Layer Security - An encryption layer of HTTP that
uses public key cryptography to establish a secure connection.
HTTPS - ANSWER: Hypertext Transfer Protocol Secure. Encrypts HTTP traffic with SSL
or TLS using port 443.
Uses public key encryption. Private key on server. Symmetric key transferred using
asymmetric encryption
IPSec - ANSWER: Internet Protocol Security. Used to encrypt traffic on the wire and
can operate in both tunnel mode (encrypt whole IP packet) and transport mode
(encrypt IP payload). It uses tunnel mode for VPN traffic. IPsec is built into IPv6, but
can also work with IPv4 and it includes both AH (header) and ESP (payload). AH
provides authentication and integrity, and ESP provides confidentiality, integrity, and
authentication. IPsec uses port 500 for IKE with VPN connections.
FTPS - ANSWER: File Transfer Protocol Secure over SSL. Negotiates SSL/TLS tunnel
first. Port 990.
, FTPES - ANSWER: FTP over SSl with encryption. Uses AUTH TLS flag to uograde tunnel
connection on port 21
SFTP - ANSWER: Secure File Transfer Protocol with SSH. Encrypts and authentications
for data secure link. Resumes interrupted tranfers, directory listings, remote file
removal
SSH - ANSWER: Secure Shell on Port 22. Encrypted terminal communication.
Replaces Telnet and FTP for remote access
LDAP - ANSWER: Lightweight Directory Access Protocol on Port 389. Language used
to communicate with directories such as Microsoft's Active Directory. It provides a
central location to manage user accounts and other directory objects.
LDAPS - ANSWER: LDAP over SSL. Port 636. Non-standard implementation of LDAP
SASL - ANSWER: Simple Authentication and Security Layer. Provides authentication
for Kerberos or client certificate
DNSSEC - ANSWER: Domain Name System Security Extensions. Validate DNS
responses for authentication and integrity. Uses public key cryptography. RRset
created by authoritative server (3rd party). One signing key
MIB - ANSWER: Management Information Base. Database for SNMP protocol for
routing
SNMP - ANSWER: Simple Network Management Protocol v 3. usernames and access
permissions (CIA)
SNMPv2c & SNMPv1 community names in plain text. no strong user-based
authentication
RSS - ANSWER: real simple syndication. Automated subscription. family of web feed
formats used to publish frequently updated digital content, such as blogs, news
feeds or podcasts.
EDR - ANSWER: Endpoint Detection and Response . Scales usinn Machine Learning,
Behavioral Analysis. Conducts RCA API driven. Lightweight agent
SSO - ANSWER: Single sign-on. Automated subscription. Authentication method
where users can access multiple resources on a network using a single account.
central authentication against a federated database for different operating systems
but only works with kerberos. Smart-cards & SAML other methods
DLP - ANSWER: Data Loss Prevention. endpoint clients (email, cloud, collaboration)
Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.
Quick and easy check-out
You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.
Focus on what matters
Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!
Frequently asked questions
What do I get when I buy this document?
You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.
Satisfaction guarantee: how does it work?
Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.
Who am I buying these notes from?
Stuvia is a marketplace, so you are not buying this document from us, but from seller knoowy96. Stuvia facilitates payment to the seller.
Will I be stuck with a subscription?
No, you only buy these notes for $17.99. You're not tied to anything after your purchase.