☑ MCQ PRACTICE

Cryptography and Network Security Unit 3

Practice objective questions for quick revision and examination preparation. Try answering each question before revealing the answer.

📚 Cryptography and Network Security
📖 Unit 3
🎯 MCQs
Cryptography and Network Security MCQs - Unit 3

Cryptography and Network Security MCQs - Unit 3

1

The message digest produced by SHA-512 is

A 160 bits
B 256 bits
C 1024 bits
D 512 bits
Correct Answer 512 bits
2

SHA-512 processes the message in blocks of

A 512 bits
B 256 bits
C 1024 bits
D 64 bits
Correct Answer 1024 bits
3

The word size used in SHA-512 is

A 32 bits
B 64 bits
C 128 bits
D 16 bits
Correct Answer 64 bits
4

The number of rounds in SHA-512 is

A 64
B 16
C 160
D 80
Correct Answer 80
5

The property that makes it infeasible to find a message from its hash value is

A collision resistance only
B avalanche effect only
C key secrecy
D pre-image resistance (one-way property)
Correct Answer pre-image resistance (one-way property)
6

The digest size of MD5 is

A 160 bits
B 256 bits
C 64 bits
D 128 bits
Correct Answer 128 bits
7

The digest size of SHA-1 is

A 128 bits
B 256 bits
C 512 bits
D 160 bits
Correct Answer 160 bits
8

HMAC is built using

A a hash function and a secret key
B only a block cipher
C only public keys
D a stream cipher
Correct Answer a hash function and a secret key
9

CMAC is built using

A a hash function
B a stream cipher
C a block cipher
D a public key
Correct Answer a block cipher
10

A message authentication code (MAC) provides

A authentication and integrity
B only confidentiality
C only availability
D non-repudiation only
Correct Answer authentication and integrity
11

A digital signature provides

A only confidentiality
B only compression
C only availability
D authentication, integrity and non-repudiation
Correct Answer authentication, integrity and non-repudiation
12

A digital signature is created using the sender's

A public key
B session key only
C hash key only
D private key
Correct Answer private key
13

The ElGamal digital signature scheme is based on

A the discrete logarithm problem
B integer factorisation
C the knapsack problem
D block cipher chaining
Correct Answer the discrete logarithm problem
14

Kerberos is an authentication service that uses

A only digital certificates
B only biometric data
C tickets and symmetric key cryptography
D only hash functions
Correct Answer tickets and symmetric key cryptography
15

The two main servers in a Kerberos realm are

A the Web server and the DNS server
B the Mail server and the Proxy server
C the Authentication Server (AS) and the Ticket Granting Server (TGS)
D the CA and the RA
Correct Answer the Authentication Server (AS) and the Ticket Granting Server (TGS)
16

The X.509 standard defines the format of

A public key certificates
B session keys
C hash functions
D firewall rules
Correct Answer public key certificates
17

A Certificate Authority (CA)

A encrypts all network traffic
B issues and signs digital certificates
C stores users' private keys
D generates one-time pads
Correct Answer issues and signs digital certificates
18

A list of certificates that are no longer valid is called a

A Certificate Revocation List (CRL)
B Certificate Request List
C Key Distribution List
D Access Control List
Correct Answer Certificate Revocation List (CRL)
19

The birthday attack is related to

A breaking RSA keys
B guessing passwords
C finding collisions in hash functions
D denial of service
Correct Answer finding collisions in hash functions
20

Which of the following is NOT a method of message authentication?

A Message encryption
B Steganography
C Message authentication code
D Hash function
Correct Answer Steganography
21

A session key is

A a temporary key used for a single session
B a permanent private key
C a root certificate
D a hash value
Correct Answer a temporary key used for a single session
22

Which of the following is NOT a way to distribute public keys?

A Public announcement
B Private announcement
C Publicly available directory
D Public key certificates
Correct Answer Private announcement
23

In HMAC, the outer padding constant opad is the byte

A 0x36 repeated
B 0x00 repeated
C 0xFF repeated
D 0x5C repeated
Correct Answer 0x5C repeated
24

In Kerberos, the Ticket Granting Ticket (TGT) is issued by

A the application server
B the client
C the Authentication Server
D the Certificate Authority
Correct Answer the Authentication Server
25

The set of hardware, software, people and policies needed to manage digital certificates is called

A Public Key Infrastructure (PKI)
B Private Key Interface
C Packet Key Inspection
D Protocol Key Index
Correct Answer Public Key Infrastructure (PKI)

Fill in the Blanks

26 A hash function converts a variable-length message into a ______-length output.
Correct Answer fixed
27 SHA-512 produces a message digest of ______ bits.
Correct Answer 512
28 The property that it is infeasible to find two different messages with the same hash is called ______ resistance.
Correct Answer collision
29 HMAC stands for ______.
Correct Answer Hash-based Message Authentication Code
30 CMAC stands for ______.
Correct Answer Cipher-based Message Authentication Code
31 A digital signature is created with the sender's ______ key.
Correct Answer private
32 A digital signature is verified with the sender's ______ key.
Correct Answer public
33 In Kerberos, the Authentication Server issues a ______ to the client after login.
Correct Answer Ticket Granting Ticket (TGT)
34 The X.509 standard defines the format of ______ certificates.
Correct Answer public key
35 CA stands for ______.
Correct Answer Certificate Authority
36 CRL stands for ______.
Correct Answer Certificate Revocation List
37 In SHA-512, a ______-bit length field is appended during padding.
Correct Answer 128
38 The ______ attack on hash functions is based on the birthday paradox.
Correct Answer birthday
39 The version of Kerberos that is widely used today is version ______.
Correct Answer 5
40 A MAC ensures message authentication and message ______.
Correct Answer integrity
← Back to All MCQs