List of questions
Related questions
Question 443 - H12-711 discussion
Which of the following statements about the PKI life cycle is correct?
A.
Certificate renewal: When the certificate expires and the key is leaked, the PKI entity must replace the certificate. The purpose of renewal can be achieved by re-applying, or it can be automatically renewed using SCEP or CPv2 protocol.
B.
Certificate download: The PKI entity downloads the issued certificate to the RA server through SCEP or CIPvz protocol, or through DAP.HIITP or out-of-band mode, download the issued certificate.
C.
Certificate issuance: When a PKI entity applies for a local certificate from a CA, if there is an RA, the RA will first review the identity information of the PKI entity. After the verification is passed, the RA will send the application information to the CA.
D.
Certificate application: certificate application, namely certificate registration, is a PKI entity introducing itself to the CA and obtaining a certificate
Your answer:
0 comments
Sorted by
Leave a comment first