Ask Computer Engineering Expert

Assignment

Part 1: Multiple Choice Questions. Unless specified otherwise all multiple choice questions have only one correct answer. Each question is worth 5 points.

PROBLEM 1 - IPSec and VPN

a) Select the term that refers to the data recipient's ability to ensure that the data was not altered in any fashion as the data was sent across the VPN:

A) Encryption.
B) Integrity.
C) Authentication.
D) Tunneling.

b) Tunneling is a technique in which the IP datagram is first _______ and then _______.

A) Encapsulated in another datagram; encrypted.
B) Encrypted; encapsulated in another datagram.
C) Authenticated; encrypted.
D) Encrypted; authenticated.

c) What is the relationship between a VPN and an extranet? Explain.

A) Some extranets are VPNs; some VPNs are extranets.
B) Some extranets are VPNs; all VPNs are extranets.
C) VPNs and extranets are the same type of network.
D) VPNs are unrelated to extranets.

d) Which one is the best approach to VPNs? Explain.

A) VPN-specific gateway device.
B) Router-based.
C) Firewall-based.
D) Software only.
E) All of the above.

PROBLEM 2 - Wireless Network Security

a) What is the protocol developed for the wireless network communications? Explain.

A) Wireless Encryption Protocol (WEP)
B) Wireless Application Protocol (WAP)
C) Wired Equivalent Privacy (WEP)
D) Wireless Session Protocol (WSP)

b) Consider 802.11 shared key authentication. Which of the following statements is false? Explain.

A) If a device with the key is lost then the security for the entire WLAN is compromised.
B) 802.1X requires shared key authentication.
C) Real users and attackers with a shared WEP key have the same rights.
D) Users cannot determine whether the access point is an imposter.
c) The term used for certified 802.11b products is ___________ .

A) WAP
B) Wi-Fi
C) WiMAX
D) WPA

d) Which of the following is not a reason why WEP may be considered vulnerable? Explain. (Select all that apply.)

A) Shared WEP keys among all clients
B) 20-bit initialization vector
C) An RC4 engine not properly initialized
D) 48-bit WEP key

PROBLEM 3 - Firewalls

a) What governs the type of traffic that is and is not allowed through a firewall? Explain.

A) TCP/IP headers.
B) Gateway.
C) Rule base.
D) Access control list.
E) Network protocol in use.

b) Firewalls can be implemented in different ways. Consider a dedicated firewall device. What is its major advantage when the target is throughput and security? Explain.

A) The management console is easily installed.
B) The device contains proprietary operating systems.
C) The connection to the device is monitored by security personnel.
D) A thorough packet inspection capability.
E) The hackers know most router-based firewall code.

c) Choose the best answer from the following options about the description of a firewall:

A) Firewalls statefully inspect reply packets to determine whether they match the expected state of a connection in the state table.
B) Firewalls statically inspect packets in both directions and filter on layer 3and layer 4 information.
C) A firewall is any device that blocks access to a protected network.
D) A firewall is a system or a group of systems that enforce an access control policy between two networks.
E) None of the above

d) For a stateful packet-inspection firewall, which information is stored in the connection flow table?

A) TCP control header and trailer information associated with a particular session.
B) Inside private IP address and the translated inside global IP address.
C) Outbound and inbound access rules (ACL entries).
D) Source and destination IP addresses, and port numbers and sequencing information associated with a particular session.
E) TCP SYN packets and the associated return ACK packets.

PROBLEM 4 - Web and Transport Layer Security

a) Which of the following are not methods for minimizing a threat to a Web server? Indicate the two best answers from the following list, and explain your choice:

A) Disable all non-Web services.
B) Ensure telnet is running.
C) Disable nonessential services.
D) Enable logging.

b) SSL is used to

A) Encrypt specific elements of data for application-specific purposes.
B) Encrypt files located on a Web server.
C) Encrypt data as it travels over a network.
D) Encrypt digital certificates used to authenticate a Web site.
E) Encrypt passwords for storage in a database.

c) What kind of attacks does SSL prevent? Select the best answer. Explain.

A) SQL Injection.
B) Sniffing.
C) Variable Manipulation.
D) Phishing Attacks.

d) _________ provides secure, remote logon and other secure client/server facilities.

A) SLP
B) HTTPS
C) TLS
D) SSH

Part 2: Short Answers. Please answer briefly and completely, and you must cite all sources of information.

1. Suppose you suspect that your session with a server has been intercepted in a man-in-the-middle attack. You have a key, K, that you think you share with the server, but you might be only sharing it with an attacker. But the server also has a public key, Kp, which is widely known, and a private secret key, Ks, that goes with it. Describe how you can either confirm you share K with the server or discover that you share it only with a man-in-the-middle. Also, be sure your solution will not be discovered by a packet sniffer.

2. A common management requirement is that "all external Web traffic must flow via the organization's Web's proxy." However, that requirement is easier stated than implemented. Discuss the various problems and issues, possible solutions, and limitations with supporting this requirement. In particular, consider issues such as identifying exactly what constitutes "Web traffic" and how it may be monitored, given the large range of ports and various protocols used by Web browsers and servers.

Computer Engineering, Engineering

  • Category:- Computer Engineering
  • Reference No.:- M92803074

Have any Question?


Related Questions in Computer Engineering

Does bmw have a guided missile corporate culture and

Does BMW have a guided missile corporate culture, and incubator corporate culture, a family corporate culture, or an Eiffel tower corporate culture?

Rebecca borrows 10000 at 18 compounded annually she pays

Rebecca borrows $10,000 at 18% compounded annually. She pays off the loan over a 5-year period with annual payments, starting at year 1. Each successive payment is $700 greater than the previous payment. (a) How much was ...

Jeff decides to start saving some money from this upcoming

Jeff decides to start saving some money from this upcoming month onwards. He decides to save only $500 at first, but each month he will increase the amount invested by $100. He will do it for 60 months (including the fir ...

Suppose you make 30 annual investments in a fund that pays

Suppose you make 30 annual investments in a fund that pays 6% compounded annually. If your first deposit is $7,500 and each successive deposit is 6% greater than the preceding deposit, how much will be in the fund immedi ...

Question -under what circumstances is it ethical if ever to

Question :- Under what circumstances is it ethical, if ever, to use consumer information in marketing research? Explain why you consider it ethical or unethical.

What are the differences between four types of economics

What are the differences between four types of economics evaluations and their differences with other two (budget impact analysis (BIA) and cost of illness (COI) studies)?

What type of economic system does norway have explain some

What type of economic system does Norway have? Explain some of the benefits of this system to the country and some of the drawbacks,

Among the who imf and wto which of these governmental

Among the WHO, IMF, and WTO, which of these governmental institutions do you feel has most profoundly shaped healthcare outcomes in low-income countries and why? Please support your reasons with examples and research/doc ...

A real estate developer will build two different types of

A real estate developer will build two different types of apartments in a residential area: one- bedroom apartments and two-bedroom apartments. In addition, the developer will build either a swimming pool or a tennis cou ...

Question what some of the reasons that evolutionary models

Question : What some of the reasons that evolutionary models are considered by many to be the best approach to software development. The response must be typed, single spaced, must be in times new roman font (size 12) an ...

  • 4,153,160 Questions Asked
  • 13,132 Experts
  • 2,558,936 Questions Answered

Ask Experts for help!!

Looking for Assignment Help?

Start excelling in your Courses, Get help with Assignment

Write us your full requirement for evaluation and you will receive response within 20 minutes turnaround time.

Ask Now Help with Problems, Get a Best Answer

Why might a bank avoid the use of interest rate swaps even

Why might a bank avoid the use of interest rate swaps, even when the institution is exposed to significant interest rate

Describe the difference between zero coupon bonds and

Describe the difference between zero coupon bonds and coupon bonds. Under what conditions will a coupon bond sell at a p

Compute the present value of an annuity of 880 per year

Compute the present value of an annuity of $ 880 per year for 16 years, given a discount rate of 6 percent per annum. As

Compute the present value of an 1150 payment made in ten

Compute the present value of an $1,150 payment made in ten years when the discount rate is 12 percent. (Do not round int

Compute the present value of an annuity of 699 per year

Compute the present value of an annuity of $ 699 per year for 19 years, given a discount rate of 6 percent per annum. As