Question 1a differentiate between confidentiality integrity

Assignment Help Computer Networking
Reference no: EM13349525

QUESTION 1:

(a) Differentiate between confidentiality, integrity and availability. Demonstrate your answer using an example.

(b) What is the dissimilarity amid between a virus, a worm and a trojan horse?

(c) Why are commercial employees especially dangerous? What sorts of attacks do they perpetrate?

(d) Does using passwords with salts make attacking a specific account more difficult than using passwords without salts? Give explanation why or why not.

(e) Illustrate the principle of least privilege. Why is it significant?

(f) Data compression is frequently used in data storage or transmission. Presume you want to use data compression in conjunction with encryption.

Does it make added sense to

I. Compress the data and then encrypt the result, or

II. Encrypt the data and then compress the result.

Give good reason for your answer.

QUESTION 2

(a) Decrypt the subsequent, which has been encrypted with a Caesar cipher: G AYKC, G QYU, G AMLOSCPCB

(b) Why is it significant for a cipher to have a large number of potential keys?

(c) Converse the algorithm of the rail fence cipher. You may use an instance to illustrate your answer.

(d) Thrash out the need to perform a threat assessment to implement a physical security program?

(e) Teardrop attacks and Ping of death attacks are methods of launching a Denial of Service attack. Make clear the terms in bold.

(f) Portray five services in PGP operation.

(g) Give explanation the need for web security. Describe briefly the three different approaches to provide web security.

QUESTION 3

(a) Illustrate three network threats that a firewall does not protect against.

(b) Clarify the strengths and weaknesses of each of the following firewall deployment scenarios in defending servers, desktop machines, and laptops against network threats.

I. A firewall at the network perimeter.

II. Firewalls on every end host machine.

III. A network perimeter firewall and firewalls on every end host machine.

(c) Amy desires to send a cellphone text message to Bill securely, over an insecure communication network.
Amy's cellphone has a RSA public key KA and co petitioning private key vA; likewise, Bill's cellphone has KB and vB.
Let's design or intend a cryptographic protocol for doing this, assuming both know each other's public keys.

Here is what Amy's cellphone will do to post the text message m:

1. Amy's phone arbitrarily picks a new AES session key k and computes c = RSA-Encrypt(KB; k), c' = AES-CBC-Encrypt(k;m), and t = RSA-Sign(vA; (c; c')).

2. Amy's phone sends (c; c'; t) to Bill's phone.
And at this time is what Bill's cellphone will do, upon receiving (c; c'; t):

1. Bill's phone ensures that t is a valid RSA signature on (c; c') under public key KA. If not, terminate.

2. Bill's phone computes k' = RSA-Decrypt(vB; c) and m' = AES-CBCDecrypt( k'; c').

3. Bill's phone updates Bill that Amy sent message m'.

I. Does this protocol guarantee the confidentiality of Amy's messages? Why or why not?

II. Does this protocol guarantee authentication and data integrity for every text message Bill receives? Explain Why or why not?

III. Presume that Bill is Amy's stockbroker. Bill hooks up the output of this protocol to an automatic stocktrading service, so if Amy sends a text message "Sell 100 shares MSFT" using the above protocol, then this trade will be straight away and automatically executed from Amy's account.

Recommend one reason why this might be a bad idea from a security point of view.

(d) Presume that an algorithm is found that can efficiently factorise a large number. Describe how a cryptanalyst could use this algorithm to break RSA cryptosystem.

Reference no: EM13349525

Questions Cloud

Question 1there are many of issues affecting cost of : question 1there are many of issues affecting cost of software. list and explain the five parts affecting pricing in
Question 1a pool of newly qualified doctors are not : question 1a pool of newly qualified doctors are not satisfied with their existing revenue and decide to set up an
Question 1a is an intrusion avoidance system more like a : question 1a is an intrusion avoidance system more like a honeypot or a firewall? describe why?b what does the quality
Question 1amake a distinction between passive and active : question 1amake a distinction between passive and active attacks.bprovide two reasons why it is very important to
Question 1a differentiate between confidentiality integrity : question 1a differentiate between confidentiality integrity and availability. demonstrate your answer using an
Question 1ai why has stuxnet virus been named as a : question 1ai why has stuxnet virus been named as a cyber-weapon?ii what has been the first identified target of the
Question 1a list and illustrate seven security conceptsb : question 1a list and illustrate seven security concepts.b give explanation of the following eight common threats facing
Case studynetworks are evolving scalability presentation : case studynetworks are evolving. scalability presentation acts reliability safety measures and cost considerations are
Question 1interpret the subsequent cautiously and answer : question 1interpret the subsequent cautiously and answer the questions which followone large employer requests cvs from

Reviews

Write a Review

Computer Networking Questions & Answers

  Find length of longest consecutive sequence of os in input

Input stream to 4B/5B block encoder is 0100 0000 0000 0000 0000 OOOI. Answer the following questions: Determine length of longest consecutive sequence of Os in input?

  Determine prefixes for four subnets

Assume it wishes to create four subnets from this block, with each block having same number of IP addresses. Determine the prefixes (of form a.b.c.d/x) for four subnets?

  How many periodic, expiration running in router x

Assuming no other route update message has been received, show the updated routing table after router X has received the RIP message shown below from router C after 200s.

  Describe available bandwidth as a function of n

Assume that N Ethernet stations, all trying to send at same time, need N/2 slot times to sort out who transmits next. Describe available bandwidth as function of N.

  Discuss at least three major evolutionary steps

A. How does Donn Parker's model compare with the X.805 framework? B. If an organization consulted you about its decision on an enterprise security framework, which would you recommend and why?

  Create a cloud app

CS 496: Cloud and Mobile Software Development. You can create the PDF anyway you like. But see homework #1 for tips on one good way to create a PDF.

  Design switched network to compliment routed network

Design a switched network to compliment your routed network. Each department will require five switches that will plug into the router cards.

  How client process in given end system find location of user

Explain how a client process in a given end system can find the location of a given user to establish a connection, for example, Internet telephone, at a given point in time.

  Maximum size of file-tcp sequence numbers are not exhausted

Consider transferring a large file of L bytes from Host A to Host B. Assume a MSS of 1460 bytes. What is the maximum value of L such that the TCP sequence numbers are not exhausted?

  Explain how signal and signal management calls

Describe how signal and signal management calls are used in creating a process and terminating it after certain interval. Give a simple example to illustrate this routine.

  Phising email it is multipart what are the two parts the

phising email it is multipart what are the two parts? the html part is it inviting the recepient to click somewhere?

  Historical crimes have changed the culture

Determine if these historical crimes have changed the culture or ethics associated with computers and information management. Explain the effectiveness of existing computer crime detection methods and technologie

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd