ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 402 - CAS-004 discussion

Report
Export

A security architect must mitigate the risks from what is suspected to be an exposed, private cryptographic key. Which of the following is the best step to take?

A.
Revoke the certificate.
Answers
A.
Revoke the certificate.
B.
Inform all the users of the certificate.
Answers
B.
Inform all the users of the certificate.
C.
Contact the company's Chief Information Security Officer.
Answers
C.
Contact the company's Chief Information Security Officer.
D.
Disable the website using the suspected certificate.
Answers
D.
Disable the website using the suspected certificate.
E.
Alert the root CA.
Answers
E.
Alert the root CA.
Suggested answer: A

Explanation:

In the context of a private cryptographic key suspected to be exposed, the best immediate action is to revoke the certificate associated with that key. Revoking the certificate ensures that it cannot be used to establish new secure sessions, which prevents attackers from using the potentially compromised key to impersonate or decrypt communications. The revocation process typically involves updating the Certificate Revocation List (CRL) or leveraging the Online Certificate Status Protocol (OCSP), both of which are used by clients to check the validity of certificates.

asked 02/10/2024
Isaac Olanrewaju
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first