Kali Linux basic assignment, create keys and put screenshot with explanation ?

Assignment 1: Cryptography Due Week 4, Worth 10%

Question 1: Security professionals need to ensure that they keep up to date with the latest threats and security issues. This allows them to update their risk profiles, such as identifying if their systems are vulnerable. In order to determine what the risk to an organisation is, you need to know what the problems could be.

In this assignment, your task is to identify a recently announced security vulnerability and write a profile of the threat. The profile should contain the name of the threat, the systems it attacks, how it performs its attack, mitigation strategies and concluding reflection (100 words) on the adequacy of the mitigation strategies. The risk to an organisation using vulnerable systems should also be determined.

Your report should be maximum 2 pages and should contain relevant tables, calculations, a ranked list of threats (in terms of impact) and conclusions.

See the scoring sheet for this assignment, and ensure that your report fulfils the criteria listed.

Scoring Q1:

Type

Score

Description

Content

Fits with a profile

Appropriately choose a profile and stay within the parameters given. Reports that go outside the bounds will lose marks from this category.

Profile completion

10

Completes the problems identified within the profile. You gain marks for ensuring that all of the points mentioned in the profile are covered in your report.

Law

Reports should cover the impact of the law on their profile

International scope

12

Your problem is placed within the international security scene, appropriately justified and excellent concluding reflection.

Subtotal:

35

Subtotal for content

Presentation

Spelling and Grammar

The presentation’s content is appropriately written in English, with no spelling errors and grammar issues.

Presentation and Style

The report is well presented, with diagrams, headings, tables and other visual aids.

References

The report contains appropriate references and referencing style.

Subtotal:

15

Subtotal for presentation

Total:

50

Question 2: You are required to learn the GPG/PGP package using Linux Kali environment (learning the applications of private and public key cryptography to secure email messages and documents) to be able to answer the following questions. You should pair up with one of your class fellow to do this lab and record results and give commentary on the results.

If you do not have a class fellow then create two user accounts and you can encrypt using one account and descript using other account.

  1. Generate keys of 2 different sizes for RSA encryption scheme and include these keys in the report.

  2. Encrypt a file (text or binary) using 2 key sizes and include your results and note the observation

  3. Create a file of close to 1 GB and encrypt and decrypt it and note the time taken. Comment on the reason why this much time has taken. Calculate how long it would take to do the encryption/decryption of a 10 GBs of data.

  4. Export your public key and discuss the reason why your exported key should be in ASCII format.

  5. Encrypt a file and output the cipher text in ASCII format. Explain when you need cipher text in ASCII format.

  6. You should work with your class fellow/or create two accounts to do this experiment and record your observation in the form of commands being used or procedure being followed and include your results.

    1. Exchange your public key and your friend’s public key using email.

    2. Import your friend’s public key into your key ring.

    3. Encrypt a file using your friend’s public key and send the encrypted file to your friend.

    4. Ask your friend to decrypt the encrypted file.

    5. You can ask your friend to do the same thing.

  1. Write a reflection report in 100 words about the role cryptography can play in ensuring right to privacy of individuals.

(Refer to http://www.pa.msu.edu/reference/pgpdoc1.html and

http://www.pa.msu.edu/reference/pgpdoc2.html, or any document about PGP/GPG)

Scoring

Type

Score

Description

Content

3 keys being generated

Keys of different sizes should be generated, contents of keys included and size estimated

File encryption

File encryption with two keys and results included with observation

Large file encryption

Analysis and observation of encryption time for large files

ASCII format

Need for keys and encrypted files to be in ASCII format

Key exchange for cryptography

Observation of key exchange and encryption and decryption

Reflection on use of cryptography

10

Role of cryptography in ensuring right to privacy

Subtotal:

35

Subtotal for content

Presentation

Spelling and Grammar

The presentation’s content is appropriately written in English, with no spelling errors and grammar issues.

Presentation and Style

The report is well presented, with diagrams, headings, tables and other visual aids.

References

The report contains appropriate references and referencing style.

Subtotal:

15

Subtotal for presentation

Total:

50