This contains the questions and answers about Web Security by Stein, one of the authors of the textbook.

Week PowerPoint  Laboratory  Supplementary Notes Self-Test Question
1

Introduction This describes the requirements.

Lecture 1 This is the first lecture and covers the essence of security in a business environment.

Laboratory one This is about the use of VisualRoute to determine the sites of different IP addresses.  Introduction   This describes the course aims, study guide, Quiz, assignment and deadline. Assignment I  Assignment II Lecture 1 This describes reviewed questions about security. 

Basic Computer Security ((this web site contains extensive information about Internet security from basic to firewall.)

Test 1 This lists out the questions on lecture 1. 

Question  only in word format

2 Lecture 2 This is about the need of physical protection in a computer room/server to ensure high level of security. Laboratory two This laboratory is about the use of Microsoft tool to show vulnerability of your PC. You could then download the fix to resolve the holes. Lecture 2

Internet Security Glossary (RFC28282)

Test 2 This lists out the questions on lecture 2. 

Question  only in word format

3 Lecture 31 This is about the definition of web security including server and client sides.

Lecture 32 This is about the basic cryptography including symmetric and asymmetric keys, basic digital signature. 

Laboratory three This laboratory is about the physical security in a computer room and the application of brute force and dictionary to determine the password of word documents.  Lecture 3 This is about the cryptograph, brute force, plaintext and ciphertext. Test 3 This lists out the questions on lecture 3. 

Question  only in word format

4 Lecture 41 This is about the basic encryption including algorithms, modes and key length.

Lecture 42 This is about the  cryptography including message digest, digital envelope, certifying authorities.  

Laboratory four This laboratory is about the eencryption and decryption using Blowfish and DES. Lecture 4 This is about authentication, message digest etc. 

Lecture 41 This is about product cipher, DES etc. 

Test 4 This lists out the questions on lectures 41 and 42. 

Question  only in word format

5
Lecture 5 This is about the  link encryption including Link Security, Link security objectives by link encryption, In-line encryptor hardware, Point to point deployment, IP-routed development and Key Recovery.
 Laboratory five This laboratory is about the generation of private and public key and a self-signed certificate.  Lecture 5 This is about encryptor and replay.  Test 5 This lists out the questions on lecture 5. 

Question  only in word format

6 Lecture 6 This is about the  security at the IP layer (IPSEC)  Laboratory six This laboratory is about the setup of IE's security  and keyboard capture to protect your PC Please submit your assignment I in lecture.

This Web site contains information on IPSEC

Test 6 This lists out the questions on lecture 6. 

Question  only in word format

7 Lecture 7 This is about the  security in TCP layer, SSL and SET.  and Key Recovery. Laboratory seven This laboratory is about sniffer and the capture of data.  Lecture 7 This is about SSL. 

This is more about SSL.

Test 7 This lists out the questions on lectures 7. 

Question  only in word format

8 Quiz Specimen This is a sample of quiz.  Other quiz specimen Lecture 8 This is about the  security using SSL. The protocol on how Verisgin validates the digital ID is covered. Laboratory eight This laboratory is about cookies and VeriSign.  Please note there will be a quiz in lecture. What is MD5? What is RC4? How to get your personal certificate? Test 8 This lists out the questions on lecture 8. 

 

9 Lecture 91 This is about the  security of active content (Java and JavaScript). Lecture 92 This is about the  web privacy. Laboratory nine This is about  backdoor software and Rabbit (JavaScript).    Test 9 This lists out the questions on lecture 9.  Question  only in word format
10 Lecture 10 This is about the  server security

Lecture 10_1 This is about the  Unix server security

Laboratory ten This laboratory is about system vulnerability   Test 10 This lists out the questions on lecture 10. 

Question  only in word format

11 Lecture 11 This is about Firewall. Laboratory eleven This laboratory is about personal firewall to protect your machine.   Please submit your assignment II in lecture. Test 11 This lists out the questions on lecture 11. 

Question  only in word format

12 Lecture 12 This is about policy and law. Laboratory twelve This laboratory is about policy and Unix security.   Policy This hyperlinks the HKSAR's policy on information technology including security. Test 12 This lists out the questions on lecture 12. Question  only in word format
13

Lecture 13 This is about overall course review and examination format.

Laboratory thirteen This laboratory is to review an exam specimen within one hour. It consists of 4 pages with 3 questions.  

Exam Specimen This consists a simple version of examination specimen with solution (section A: 1 question, Section B: 1 question)  

home.gif (6343 bytes)You are the  visitor since 13-January-2002