Quiz 1 Topics

Chapter 1 -Intro

Definitions and examples: Security Attacks, Services, Mechanisms, Authentication, Integrity, Nonrepudiation, Access Control, RFC's,

Chapter 2 - Cryptography

Conventional (Secret-Key), cryptoanalysis, plaintext, ciphertext, number of possible keys, characteristics of good encryption and random numbers,Feistel structure, DES, 3-DES, IDAE, Blowfish, Crypto-feedback: CBC, CFB, Key distribution, use of a session key (why), concept of information entrophy, use of redundancy to recognize plaintext and break codes (Caesar codes, substitution codes, block codes), self-synchronizing codes (pros and cons)

Chapter 3 - Public-Key and Authentication

Role of trusted authority, man-in-the-middle, MAC and MIC, one-way hashes (desired characteristics, RSA and Difie-Hellman (basic operation), Digital Signatures, certificates,

Chapter 4 - Authentication Applications

Kerberos, X.509 Authentication (Certificates), tickets, KDC, chain of authentication (CA hierarchy), Certificate Authority,

Chapter 5 - Email (basics only)

General

Know the advantages and disadvantages of the various mechanisms. How can they be attacked, what is necessary for effective implementation.