Tag the questions with any skills you have. Your dashboard will track each student's mastery of each skill.
Give this quiz to my class
Q 1/26
Score 0
Which of the following describes the behavior of a Thales Luna HSM 7 when it enters the 'Decommissioned' state, often associated with its final operational lifecycle day or a critical tamper event?
30
All key material and user data are permanently erased, and the HSM requires re-initialization to be used again.
Only the Auditor role remains active to allow for a final extraction of the audit trail logs.
The HSM enters a read-only mode where keys can be exported but not used for cryptographic operations.
The device automatically uploads an encrypted backup to the Thales Customer Portal before shutting down.
Q 2/26
Score 0
Which command-line utility is used to perform high-level administrative tasks such as initializing the HSM, managing partitions, and configuring network settings on a Luna Network HSM 7?
30
CKDemo
HTL
LunaCM
VTL
LunaSH
26 questions
Q.
Which of the following describes the behavior of a Thales Luna HSM 7 when it enters the 'Decommissioned' state, often associated with its final operational lifecycle day or a critical tamper event?
1
30 sec
Q.
Which command-line utility is used to perform high-level administrative tasks such as initializing the HSM, managing partitions, and configuring network settings on a Luna Network HSM 7?
2
30 sec
Q.
In the context of Thales Luna HSM 7, what is the primary purpose of the "Ped Client" utility?
3
30 sec
Q.
Which specific LunaCM command is used to permanently lock out the current partition's User or SO roles by intentionally exceeding the allowed number of failed login attempts?
4
30 sec
Q.
Which Thales Luna 7 feature allows for the secure backup and restoration of cryptographic objects between an HSM partition and a specialized handheld hardware device?
5
30 sec
Q.
Which LunaCM command must be executed by the Partition SO to enable the use of private keys by a client application after a partition has been initialized?
6
30 sec
Q.
Which specific LunaSH command is used to display the 'Binding' status and confirm that the HSM hardware is communicating correctly with the appliance software on a Luna Network HSM 7?
7
30 sec
Q.
Which specific LunaCM command is used to synchronize the capability and policy settings of a partition with another HSM or a Backup HSM for cloning operations?
8
30 sec
Q.
Which specific LunaSH command is utilized by the 'admin' user to generate the certificate required for establishing a Network Trust Link (NTL) with a client workstation?
9
30 sec
Q.
Which specific LunaCM command is used to enable the 'Activation' feature on a PED-authenticated partition, allowing the Partition User to provide the challenge secret without requiring the physical PED key for every subsequent login?
10
30 sec
Q.
Which specific LunaCM command is used to display the detailed list of cryptographic objects, such as keys and certificates, stored within the currently selected partition?
11
30 sec
Q.
Which specific Thales Luna HSM 7 feature allows for the secure, hardware-based delegation of administrative roles, enabling a separation of duties between the 'Security Officer' and 'Partition Policy Confidentiality'?
12
30 sec
Q.
In the context of Thales Luna HSM 7, which feature enables a single physical appliance to be logically divided into distinct cryptographically isolated entities for multi-tenant environments?
13
30 sec
Q.
Regarding Thales Luna HSM 7, what is the primary function of the 'Functional Modules' (FM) feature?
14
30 sec
Q.
Which specific protocol is utilized by the Thales Luna HSM 7 to provide a secure, encrypted communication channel between the HSM and a client application, ensuring the integrity and confidentiality of cryptographic commands?
15
30 sec
Q.
Which specific hardware-based mechanism in Thales Luna HSM 7 is used to ensure that the primary cryptographic keys are never stored in plaintext on a hard drive, but instead reside within a secure microchip?
16
30 sec
Q.
Which specific performance feature of the Thales Luna HSM 7 allows for the secure, off-board movement and synchronization of keys between HSMs within a high-availability group?
17
30 sec
Q.
Which specific Thales Luna HSM 7 management interface allows for the remote administration of PED-authenticated HSMs, removing the requirement for local physical presence to perform sensitive 'M of N' operations?
18
30 sec
Q.
Which specific management feature in Thales Luna HSM 7 allows for the centralized automation of crypto-resource provisioning and monitoring across multiple HSM clusters through a RESTful API?
19
30 sec
Q.
Which specific Thales Luna HSM 7 feature ensures that even if an entire HSM appliance is physically stolen, the internal keys cannot be extracted because they are encrypted by a secondary hardware-wrapped key known as the 'Binding Key'?
20
30 sec
Q.
Which specific hardware component in the Thales Luna HSM 7 is responsible for triggering an 'Active Tamper' event, which instantly zeroes the cryptographic keys if the physical chassis is breached?
21
30 sec
Q.
Which specific management architecture is used by Thales Luna HSM 7 to ensure 'Two-Factor Quorum' authentication for sensitive administrative operations?
22
30 sec
Q.
In Thales Luna HSM 7, what is the specific function of the 'Remote PED' (PIN Entry Device) setup?
23
30 sec
Q.
In the Thales Luna HSM 7, which cryptographic mechanism is primarily used to ensure 'Key Exportability' is strictly controlled and that keys cannot be extracted in plaintext?
24
30 sec
Q.
Which specific hardware component in a Thales Luna HSM 7 is responsible for the generation of high-entropy cryptographic material and is compliant with the FIPS 140-2 Level 3 requirements?
25
30 sec
Q.
Which specific Thales Luna HSM 7 feature allows for the grouping of multiple HSMs to provide load balancing and automatic failover for client applications?