11 Cybersecurity and Data Protection • Authentication and Authorisation किसी उपयोगकर्ता की बताई गई पहचान की पुष्टि करना क्या कहलाता है? What is verifying the identity claimed by a user called? A. प्रमाणीकरण Authentication B. प्राधिकरण Authorisation C. संपीड़न Compression D. इंडेक्सिंग Indexing उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: A Correct Answer: A प्रमाणीकरण जाँचता है कि उपयोगकर्ता वास्तव में कौन है। प्राधिकरण यह तय करता है कि उसे कौन-से कार्य या संसाधन उपयोग करने की अनुमति है। Authentication verifies who the user is. Authorisation determines which actions or resources that user is permitted to access.
12 Cybersecurity and Data Protection • Authentication and Authorisation लॉगिन किए उपयोगकर्ता को केवल रिपोर्ट पढ़ने, लेकिन बदलने की अनुमति न देना किससे संबंधित है? Allowing a logged-in user to read a report but not modify it is an example of: A. कंपाइलेशन Compilation B. डेटा संपीड़न Data compression C. प्राधिकरण Authorisation D. डिफ्रैगमेंटेशन Defragmentation उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: C Correct Answer: C प्राधिकरण उपयोगकर्ता के अधिकार तय करता है। पढ़ने और लिखने की अनुमतियाँ अलग-अलग नियंत्रित की जा सकती हैं। Authorisation determines user permissions. Read and write access can be controlled separately.
13 Cybersecurity and Data Protection • Multifactor Authentication कौन-सा संयोजन दो अलग प्रकार के प्रमाणीकरण कारकों का उदाहरण है? Which combination is an example of two different authentication factor types? A. पासवर्ड और सुरक्षा प्रश्न का उत्तर A password and the answer to a security question B. पासवर्ड और फिंगरप्रिंट A password and a fingerprint C. दो अलग पासवर्ड Two different passwords D. PIN और पासवर्ड A PIN and a password उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: B Correct Answer: B पासवर्ड ज्ञात जानकारी का कारक है, जबकि फिंगरप्रिंट जैविक पहचान का कारक है। दो पासवर्ड एक ही प्रकार के कारक हैं। A password is a knowledge factor, while a fingerprint is an inherence factor. Two passwords belong to the same factor type.
14 Cybersecurity and Data Protection • Authentication Methods OTP का सही पूर्ण रूप क्या है? What is the correct expansion of OTP? A. Online Transfer Protocol Online Transfer Protocol B. Open Transaction Process Open Transaction Process C. Original Text Protection Original Text Protection D. One-Time Password One-Time Password उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: D Correct Answer: D OTP एक बार उपयोग के लिए बनाया गया पासवर्ड या कोड है। यह सीमित अवधि या विशेष प्रमाणीकरण प्रयास के लिए मान्य हो सकता है। An OTP is a password or code intended for one-time use. It may be valid for a limited period or a particular authentication attempt.
15 Cybersecurity and Data Protection • CIA Triad कौन-सा सुरक्षा सिद्धांत सुनिश्चित करता है कि जानकारी केवल अधिकृत लोगों को उपलब्ध हो? Which security principle ensures that information is accessible only to authorised parties? A. गोपनीयता Confidentiality B. उपलब्धता Availability C. डेटा रिडंडेंसी Data redundancy D. पोर्टेबिलिटी Portability उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: A Correct Answer: A गोपनीयता अनधिकृत जानकारी-प्रकटीकरण से सुरक्षा है। पहुँच नियंत्रण और एन्क्रिप्शन इसे बनाए रखने में सहायता कर सकते हैं। Confidentiality protects against unauthorised disclosure. Access controls and encryption can help maintain it.
16 Cybersecurity and Data Protection • CIA Triad डेटा में अनधिकृत परिवर्तन रोकना किस सुरक्षा सिद्धांत से संबंधित है? Preventing unauthorised changes to data relates to which security principle? A. केवल उपलब्धता Availability only B. केवल पोर्टेबिलिटी Portability only C. अखंडता Integrity D. संपीड़न Compression उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: C Correct Answer: C अखंडता डेटा को अनुचित परिवर्तन या नष्ट किए जाने से बचाने से संबंधित है। इसका उद्देश्य डेटा की शुद्धता और पूर्णता बनाए रखना है। Integrity concerns protection against improper alteration or destruction, helping preserve data accuracy and completeness.
17 Cybersecurity and Data Protection • CIA Triad अधिकृत उपयोगकर्ताओं को आवश्यक समय पर प्रणाली और डेटा मिलना किस सुरक्षा सिद्धांत से संबंधित है? Ensuring authorised users can access systems and data when needed relates to which security principle? A. गोपनीयता Confidentiality B. उपलब्धता Availability C. गुमनामी Anonymity D. संपीड़न Compression उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: B Correct Answer: B उपलब्धता का अर्थ अधिकृत उपयोगकर्ताओं के लिए समय पर विश्वसनीय पहुँच है। सेवा बाधित करने वाले हमले इसी गुण को प्रभावित करते हैं। Availability means timely and reliable access for authorised users. Service-disruption attacks affect this property.
18 Cybersecurity and Data Protection • Encryption Basics एन्क्रिप्शन में पठनीय मूल डेटा को क्या कहा जाता है? What is the readable original data called in encryption? A. Ciphertext Ciphertext B. Hash digest Hash digest C. Public key Public key D. Plaintext Plaintext उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: D Correct Answer: D Plaintext मूल पठनीय डेटा है। एन्क्रिप्शन इसे Ciphertext में बदलता है, जिसे उपयुक्त कुंजी से डिक्रिप्ट किया जा सकता है। Plaintext is the original readable data. Encryption transforms it into ciphertext, which can be decrypted using the appropriate key.
19 Cybersecurity and Data Protection • Encryption Methods सममित एन्क्रिप्शन में सामान्यतः कौन-सी कुंजी व्यवस्था होती है? Which key arrangement is generally used in symmetric encryption? A. एन्क्रिप्शन और डिक्रिप्शन के लिए एक ही साझा गुप्त कुंजी The same shared secret key for encryption and decryption B. केवल सार्वजनिक कुंजी, कोई गुप्त कुंजी नहीं Only a public key, with no secret key C. केवल पासवर्ड का नाम, कोई कुंजी नहीं Only a password name, with no key D. हर बार बिना किसी कुंजी के परिवर्तन Transformation without any key every time उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: A Correct Answer: A सममित एन्क्रिप्शन में साझा गुप्त कुंजी का उपयोग होता है। असममित क्रिप्टोग्राफी में सार्वजनिक और निजी कुंजी की जोड़ी होती है। Symmetric encryption uses a shared secret key. Asymmetric cryptography uses a public-private key pair.
20 Cybersecurity and Data Protection • Digital Signatures डिजिटल हस्ताक्षर का प्रमुख उद्देश्य क्या है? What is a principal purpose of a digital signature? A. दस्तावेज़ का आकार घटाना To reduce document size B. दस्तावेज़ का अनुवाद करना To translate the document C. संदेश के स्रोत की प्रामाणिकता और अखंडता की जाँच में सहायता करना To help verify message origin authenticity and integrity D. दस्तावेज़ को अपने आप गोपनीय बनाना To automatically make the document confidential उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: C Correct Answer: C डिजिटल हस्ताक्षर संबंधित निजी कुंजी से बनाया और सार्वजनिक कुंजी से सत्यापित किया जाता है। यह स्वयं संदेश की गोपनीयता सुनिश्चित नहीं करता। A digital signature is created with the relevant private key and verified with the public key. It does not itself ensure message confidentiality.