
EC-CouncilCertified Encryption Specialist
Domain 3Objective 3
Diffie-Hellman Key Exchange and Random Number Generators ECES Practice Questions (Page 3)
Part of the Asymmetric Cryptography and Number Theory domain, which makes up ~17% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 3–5 from this objective — we provide 40 practice questions to prepare you well beyond it. (estimate)
40questions here
8free pages
7concepts
Questions 11–15
- 11
Two developers are implementing Diffie-Hellman key exchange for a chat application. They agree on a large prime p and a primitive root g. Developer A sends g^a mod p, and Developer B sends g^b mod p. They then compute the shared secret. Which computation correctly yields the shared secret for Developer A?
Select an answer first - 12
A software developer is implementing a Diffie-Hellman key exchange in a legacy system and needs to generate the private exponent. The system currently uses a linear congruential generator (LCG) for random numbers. A security consultant advises against using the LCG for this purpose. Which reason best explains why an LCG is unsuitable for generating Diffie-Hellman private keys?
Select an answer first - 13
A security architect is designing a Diffie-Hellman key exchange for a high-security environment. The requirement is to prevent man-in-the-middle attacks while also ensuring that the private keys are generated with high entropy. The architect considers using digital signatures for authentication and a hardware TRNG for key generation. Which combination of choices best meets the requirement?
Select an answer first - 14
Which of the following is an example of a hardware entropy source used in a TRNG?
Select an answer first - 15
A developer is implementing a Diffie-Hellman key exchange in a legacy system and needs to generate ephemeral private keys. The developer proposes using the Mersenne Twister PRNG because it is fast and has a long period. Why is this a poor choice for cryptographic key generation?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECES” is a trademark of its owner, used for identification only.