Digital Certificates Flashcards

(16 cards)

1
Q

Digital Certificate

A
  • Digitally signed electronic document that binds a public key with a user’s identity
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Wildcard Certificate

A
  • Allows all of the subdomains to use the same public key certificate and have it displayed as valid
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Subject Alternate Name - SAN field

A
  • Certificate that specifies what additional domains and IP addresses are going to be supported
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Single-Sided Certificate

A
  • Only requires the server to be validated
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Dual-Sided Certificate

A
  • Requires both the server and the user to be validated
  • Only used in high security environments, as it takes up more resources
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Self-Signed Certificate

A
  • Digital certificate that is signed by the same entity whose identity it certifies
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Third-Party Certificate

A
  • Digital certificate issued and signed by a trusted certificate authority (CA) - They issue the certs
  • Usually embedded by browser
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Root of Trust

A
  • Each certificate is validated using the concept of a root of trust or the chain of trust
  • Implicitly trusting a certificate based on the root hierarchy of the certificate - I.E. Father, Grandfather
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Registration Authority (RA)

A
  • Requests identifying information from the user and forwards that certificate request up to the certificate authority to create the digital certificate

EXAMPLE: Verisign

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Certificate Signing Request (CSR)

A
  • A block of encoded text that contains information about the entity requesting the certificate
  • This includes… Organization Name, Domain Name, Locality, and Country
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Certificate Revocation List (CRL)

A
  • Serves as an online list of digital certificates that the certificate authority has already revoked
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Online Certificate Status Protocol (OCSP)

A
  • Allows to determine the revocation status of any digital certificate using its serial number
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

OCSP Stapling

A
  • Allows the certificate holder to get the OCSP record from the server at regular intervals
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Public Key Pinning

A
  • Allows an HTTPS website to resist impersonation attacks from users who are trying to present fraudulent certificates
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Key Escrow

A
  • Occurs when a secure copy of a user’s private key is being held
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Key Recovery Agent

A
  • Specialized type of software that allows the restoration of a lost or corrupted key to be performed