
GIAC Security Essentials
Domain 3Objective 2
Cryptography Application GSEC Practice Questions (Page 2)
Part of the Cryptography and Communications domain, which makes up ~12% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 240-minute exam (~95–160 total, ~11–19 in this domain), expect 4–6 from this objective — we provide 42 practice questions to prepare you well beyond it. (estimate)
42questions here
9free pages
8concepts
Questions 6–10
- 6
Two servers need to establish a secure TLS session. They want to use a key exchange method that provides forward secrecy, meaning that if the server's long-term private key is compromised in the future, past session keys remain secure. Which key exchange method should they choose?
Select an answer first - 7
A network engineer is configuring IPsec between two sites. The engineer wants to ensure that if one site's private key is compromised, past session keys cannot be recovered. Which IPsec setting should be enabled?
Select an answer first - 8
Which cryptographic protocol is commonly used to secure web browsing (HTTPS)?
Select an answer first - 9
Which statement best describes symmetric encryption?
Select an answer first - 10
A forensic investigator needs to prove that a log file has not been altered since it was collected. The investigator has the original hash of the log file, but the hash was stored on the same compromised system. Which additional step would strengthen the integrity evidence?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSEC” is a trademark of its owner, used for identification only.