SY0-401 CompTIA Security+ Certification Practice Exam – 03

SY0-401 CompTIA Security+ Certification Practice Exam – 03

28 Jan , 2021  

Sample Questions:

Deploying a wildcard certificate is one strategy to:

Secure the certificate’s private key.

Increase the certificate’s encryption key length.

Extend the renewal date of the certificate.

Reduce the certificate management burden.

Which of the following actions in PKI takes a certificate authority?

Signs and verifies all infrastructure messages

Issues and signs all private keys

Publishes key escrow lists to CRLs

Issues and signs all root certificates

Which of the following is used to certify intermediate authorities in a large PKI deployment?

Root CA

Recovery agent

Root user

Key escrow

Which of the following components MUST be trusted by all parties in PKI?

Key escrow


Private key

Recovery key

Company employees are required to have workstation client certificates to access a bank website. These certificates were backed up as a precautionary step before the new computer upgrade. After the upgrade and restoration, users state they can access the bank’s website, but not login. Which is the following is MOST likely the issue?

The IP addresses of the clients have change

The client certificate passwords have expired on the server

The certificates have not been installed on the workstations

The certificates have been installed on the CA

A company’s security administrator wants to manage PKI for internal systems to help reduce costs. Which of the following is the FIRST step the security administrator should take?

Install a registration server.

Generate shared public and private keys.

Install a CA

Establish a key escrow policy.

