5. A __________ attack is one in which an attacker obtains a copy of an authenticated
packet and later transmits it to the intended destination.
6. Authentication makes use of the _________ message authentication code.
7. A security association is uniquely identified by three parameters: Security
Protocol Identifier, IP Destination Address, and ________ .
8. The __________ facility is concerned with the secure exchange of keys.
9. _________ can be used to provide confidentiality, data origin authentication,
connectionless integrity, an anti-replay service, and traffic flow confidentiality.
10. IPsec provides security services at the ________ layer by enabling a system to
select required security protocols, determine the algorithms to use for the
services and put in place any cryptographic keys required to provide the
requested services.
11. The selectors that determine a Security Policy Database are: Name, Local and
Remote Ports, Next Layer Protocol, Remote IP Address, and _________ .
12. The term _________ refers to a sequence of SAs through which traffic must be
processed to provide a desired set of IPsec services.
13. Generic in that it does not dictate specific formats, the _________ is a key exchange
protocol based on the Diffie-Hellman algorithm with added security.
14. Three different authentication methods can be used with IKE key determination:
Public key encryption, symmetric key encryption, and _________ .
15. At any point in an IKE exchange the sender may include a _________ payload to
request the certificate of the other communicating entity.