ITEC 1001 UMGC Data Security in the Real World Questions
Part I Q1-10 (5 points each), choose best one. Please provide reason as asked of your choice in a few sentences, in your own words and/or reasons not choosing the other choices.Restating the problem in your own words does not constitute as the reason. Sometimes defining the terms may give you a clue to the reason.
Reason:
- How one should not report computer crime?
- telephone
- tell management in person
- tell the IT department in person
- The algorithm _____ is no longer considered computationally secure.
- DES
- RSA
- AES
- Diffie-Hellman?
- Which of the following are the reason for the difficulties in prosecutions of computer-related crimes? (a, b, c or d)
- What is authentication?
- Which is not considered the misuse of information?
- How does a client machine find the web address associated with a particular URL?
- It uses translation software in the interpreter.
- It sends a message to the nearest domain name server.
- It uses hashing to translate the address.
- It sends a message to the URL server.
- What defines the strength of a cryptographic method?
- it
Reason: Why you did not select other options
Reason: Why did you choose?
- The area of litigation is extremely technical and difficult to understand.
- Most of the crimes do not fall under any of the current laws
- The laws themselves are relatively new and untested.
- The technology is very dynamic, and the tactics of the perpetrators are constantly changing.
- 1 and 2
- 1, 2 and 3
- 1, 2 and 4
- 1, 3 and 4
Reason:
- the act of binding an entity to a representation of identity
- the act of ensuring that information is being sent securely
- the act of ensuring that the receiver of information actually received it
- the act of binding a computer system to a network
Reason: Why it is important?
- the untimely release of secret information
- the deletion of information from a system
- the illegal sale of information to rival companies
- the misrepresentation of information
Reason:
Reason:
Reason: Why it defines the strength?
- What is the most important benefit of asymmetrical encryption?
- What piece of legislation allows computer records documenting criminal activity to be used in court?
- National Infrastructure Protection Act
- Federal Computer Documents Rule 703(a)
- Digital Signature Bill
- Federal Rules of Evidence 803(6)
- Which part(s) of CAIN is realized through the use of message digest functions and hashes?
- confidentiality
- authenticity
- integrity
- non-repudiation
Reason: Contrast with symmetrical encryption
Reason:
How it is realized?
Part II Q1-2(Each 15 points)
QII.1Suppose we use key pair K1, K2 (public key and private key) for encryption and key pair K3, K4 (public key and private key) for the digital signature
What are the advantages and disadvantages in the following cases
- K1 and K2 are the same as K3 and K4
- K1 and K2 are different than K3 and K4
- [2 pts] This number, put at the end of each message, is an example of what cryptographic item?
- [2 pts] Does it have the characteristic of being one-way i.e. can you deduce the original message?
- [4 pts] Is it collision resistant? Why?
- [7 pts] Can you suggest some other way to indicate that message is from the sender without resorting to encryption?
QII.2 Suppose your spy colleague wanted to send you messages that you could be sure came from him (and not an enemy trying to pretend to be him). Your colleague personally tells you: “Whenever I send you a message, the last thing in the message will be a number. That number will be a count of the number of letter E’s in the message. If you get a message, and the number at the end is NOT an accurate count of the number of letter E’s, then that message is from an imposter.”
Part 3: Essay Question.Maximum length: 900 words, (weight 20 pts.)
An enterprising group of entrepreneurs is starting a new data storage and retrieval business, SecureStore, Inc. For a fee, the new company will accept digitalized data (text and images, multimedia), and store it on hard drives until needed by the customer. Customer data will be transmitted to and from SecureStore over the Internet.SecureStore guarantees that the confidentiality and integrity of the data will be maintained.
SecureStore also envisions certain information assurance requirements for their internal operations. Company employees will need to exchange confidential email and will need a mechanism for verifying the integrity and originator of some email messages. Also, SecureStore intends a daily backup of all customer data to a remote facility via a leased line. They wish to do so as economically as possible, while ensuring the data’s confidentiality and integrity.
Describe briefly how they would satisfy Secure Store’s requirements as stated above. How would a successful candidate respond?
First, list the requirements derived from the above statements (note the highlighted words); list them and address each requirement.Keep in mind that this business will be operating in the real world, which means please pay attention to economics.
Collepals.com Plagiarism Free Papers
Are you looking for custom essay writing service or even dissertation writing services? Just request for our write my paper service, and we'll match you with the best essay writer in your subject! With an exceptional team of professional academic experts in a wide range of subjects, we can guarantee you an unrivaled quality of custom-written papers.
Get ZERO PLAGIARISM, HUMAN WRITTEN ESSAYS
Why Hire Collepals.com writers to do your paper?
Quality- We are experienced and have access to ample research materials.
We write plagiarism Free Content
Confidential- We never share or sell your personal information to third parties.
Support-Chat with us today! We are always waiting to answer all your questions.
