Geschreven door studenten die geslaagd zijn Direct beschikbaar na je betaling Online lezen of als PDF Verkeerd document? Gratis ruilen 4,6 TrustPilot
logo-home
Tentamen (uitwerkingen)

Certificates and Certification Authorities Questions and answers latest update

Beoordeling
-
Verkocht
-
Pagina's
2
Cijfer
A+
Geüpload op
22-05-2024
Geschreven in
2023/2024

Certificates and Certification Authorities Questions and answers latest update What is a digital certificate? Why do we need it? A signed statement from a Certificate Authority that links a public key to a given subject. We need it to know that a public key is in fact linked to the person we think it is. what is the usual content of a digital certificate? Serial number, subject, issuer, time validity, certificate policies, availability of revocation information, key usage, Public key of subject, CA's signature (private key), key identifiers, identifiers of algorithms used for qualified certificates: QCStatement, transaction limit What key usage types do you know? Digital Signature (security services other than non-repudiation, certificate signing, or CRL signing), Non-Repudiation (verify digital signatures used to provide a non-repudiation service), Key Encipherment (encrypts the key (usually private) with another key (usually public)), Data Encipherment (encrypt user data other than key), Key agreement (when the sender and receiver of the public key need to derive the key without using encryption), Key Certification Signing (public key used to verify signature on certificate), CRL signing (when the subject public key is to verify a signature on revocation information), Encipher Only (public key can encipher data and confirm key agreement), Decipher Only (public key can decipher data and confirm key agreement) What types of certificates do you know? Webserver (TLS/SSL): Domain validated, Organization validated, extended validation What are the main tasks of a Certificate Authority? The organization that certifies that a given public key belongs to a given subject, "trusted third party" How are key pairs generated in a PKI? By the subject (public key sent to CA), by the CA (private key sent to subject) Where are the private keys stored? (CA, end-user) CA doesn't store private keys; End-user can store on computer, on a hardware token, on a hardware security model, or in the cloud Why do we need certificate revocation? What approaches do you know for it? Ensure an attacker cannot use an obtained private key to sign documents or decrypt messages on the user's behalf. A certificate can expire (outside of valid time frame) or be revoked (permanent) or suspended (reversible). The CA changes the status of the certificate in it's own database What is a Certification Path? The path through different CA's that allows the user to check whether a certificate is valid

Meer zien Lees minder
Instelling
Vak

Voorbeeld van de inhoud

Certificates and Certification Authorities
Questions and answers latest update
What is a digital certificate? Why do we need it?
A signed statement from a Certificate Authority that links a public key to a given subject. We need it
to know that a public key is in fact linked to the person we think it is.


what is the usual content of a digital certificate?
Serial number, subject, issuer, time validity, certificate policies, availability of revocation information,
key usage, Public key of subject, CA's signature (private key), key identifiers, identifiers of algorithms
used
for qualified certificates: QCStatement, transaction limit


What key usage types do you know?
Digital Signature (security services other than non-repudiation, certificate signing, or CRL signing),
Non-Repudiation (verify digital signatures used to provide a non-repudiation service),
Key Encipherment (encrypts the key (usually private) with another key (usually public)),
Data Encipherment (encrypt user data other than key),
Key agreement (when the sender and receiver of the public key need to derive the key without using
encryption),
Key Certification Signing (public key used to verify signature on certificate),
CRL signing (when the subject public key is to verify a signature on revocation information),
Encipher Only (public key can encipher data and confirm key agreement),
Decipher Only (public key can decipher data and confirm key agreement)


What types of certificates do you know?
Webserver (TLS/SSL): Domain validated, Organization validated, extended validation


What are the main tasks of a Certificate Authority?
The organization that certifies that a given public key belongs to a given subject, "trusted third party"


How are key pairs generated in a PKI?
By the subject (public key sent to CA), by the CA (private key sent to subject)


Where are the private keys stored? (CA, end-user)
CA doesn't store private keys; End-user can store on computer, on a hardware token, on a hardware
security model, or in the cloud


Why do we need certificate revocation? What approaches do you know for it?
Ensure an attacker cannot use an obtained private key to sign documents or decrypt messages on the
user's behalf.
A certificate can expire (outside of valid time frame) or be revoked (permanent) or suspended
(reversible). The CA changes the status of the certificate in it's own database


What is a Certification Path?
The path through different CA's that allows the user to check whether a certificate is valid


What makes a CA root?

Geschreven voor

Vak

Documentinformatie

Geüpload op
22 mei 2024
Aantal pagina's
2
Geschreven in
2023/2024
Type
Tentamen (uitwerkingen)
Bevat
Vragen en antwoorden

Onderwerpen

$10.69
Krijg toegang tot het volledige document:

Verkeerd document? Gratis ruilen Binnen 14 dagen na aankoop en voor het downloaden kun je een ander document kiezen. Je kunt het bedrag gewoon opnieuw besteden.
Geschreven door studenten die geslaagd zijn
Direct beschikbaar na je betaling
Online lezen of als PDF

Maak kennis met de verkoper

Seller avatar
De reputatie van een verkoper is gebaseerd op het aantal documenten dat iemand tegen betaling verkocht heeft en de beoordelingen die voor die items ontvangen zijn. Er zijn drie niveau’s te onderscheiden: brons, zilver en goud. Hoe beter de reputatie, hoe meer de kwaliteit van zijn of haar werk te vertrouwen is.
EXAMSMART Howard Community College
Volgen Je moet ingelogd zijn om studenten of vakken te kunnen volgen
Verkocht
10
Lid sinds
2 jaar
Aantal volgers
2
Documenten
2992
Laatst verkocht
1 maand geleden
SMART.SCORES

On this page, you find all documents, package deals, and flashcards offered by seller LectJoshua.

5.0

2 beoordelingen

5
2
4
0
3
0
2
0
1
0

Recent door jou bekeken

Waarom studenten kiezen voor Stuvia

Gemaakt door medestudenten, geverifieerd door reviews

Kwaliteit die je kunt vertrouwen: geschreven door studenten die slaagden en beoordeeld door anderen die dit document gebruikten.

Niet tevreden? Kies een ander document

Geen zorgen! Je kunt voor hetzelfde geld direct een ander document kiezen dat beter past bij wat je zoekt.

Betaal zoals je wilt, start meteen met leren

Geen abonnement, geen verplichtingen. Betaal zoals je gewend bent via iDeal of creditcard en download je PDF-document meteen.

Student with book image

“Gekocht, gedownload en geslaagd. Zo makkelijk kan het dus zijn.”

Alisha Student

Bezig met je bronvermelding?

Maak nauwkeurige citaten in APA, MLA en Harvard met onze gratis bronnengenerator.

Bezig met je bronvermelding?

Veelgestelde vragen