Shandong University Introduction to Information Security Final Exam Recall Edition (2021.12)

2021SC@SDUSC

1. Short answer questions (72 points) (9*8)

1. What are the advantages of X800 compared with traditional password requirements.

2. Compare 2-DES and 3-DES, security.

3. What is the significant change of double-table substitution in classical encryption from single-table substitution.

4. Common operating modes of symmetric cryptographic algorithms, how they work.

5. Comparison of end-to-end encryption and link encryption, security and flexibility.

6. Euler's theorem and its proof, and its relationship with RSA encryption.

7. What problems does Kerberos solve and analyze its security

8. The nature of the hash function, the practical application of such a design.

9. The difference between symmetric encryption, hash function, and mac, and what is the relationship between them.

2. Essay questions (28 points) (2*14)

1. Please give a textbook-style RSA signature process. Verify its feasibility, and analyze whether there is room for optimization step by step. Analyze the safety and practicability of this method, and give an example to illustrate. (ps: the example probably refers to this)

image-20211223131818302

2. What is the security model of online banking based on B/S architecture, what are the security problems and requirements, and how to improve or solve them.


PS: The amount of questions is relatively large, and there is no time to memorize them after writing, so it is very sloppy. The deepest impression is that there are a lot of security analyzes in the questions (almost every question has a security). Everyone should think about it during the test preparation time. The security mentioned above is just the tip of the iceberg.

Completeness) Everyone should think about it during the test preparation time. The safety mentioned above is just the tip of the iceberg.

The test paper should be written by Mr. Hou Mengbo himself. After reading the test paper, the feeling is that you are rarely asked detailed questions, but you must have a general and clear understanding. The title is also to guide you to think more, to ask a few more questions about why this is done and designed this way, not just memorizing concepts. Although the topic is a bit anti-human, but I think Mr. Hou's ability to produce papers is still online.

The original version (it will be used as a classroom exercise by Mr. Hou in the next semester): https://blog.csdn.net/qq_50861917/article/details/123218664

Guess you like

Origin blog.csdn.net/qq_50861917/article/details/122104886