Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

IIBA-CCA Exam - Topic 6 Question 14 Discussion

Certificates that provide SSL/TLS encryption capability:
B) can be purchased from certificate authorities.
A) are similar to the unencrypted data.
C) are for data located on thumb drives.
D) can provide authorization of data access.

IIBA-CCA Exam - Topic 6 Question 14 Discussion

Actual exam question for IIBA's IIBA-CCA exam
Question #: 14
Topic #: 6
[All IIBA-CCA Questions]

Certificates that provide SSL/TLS encryption capability:

Show Suggested Answer Hide Answer
Suggested Answer: B

SSL/TLS relies on digital certificates to support encrypted communications and to help users trust that they are connecting to the correct server. A TLS certificate is typically an X.509 certificate that binds a public key to an identity, such as a domain name, and is digitally signed by a trusted issuer. In most public internet use cases, these certificates are issued by Certificate Authorities that browsers and operating systems already trust through pre-installed root certificates. Because of that trust chain, organizations commonly obtain certificates by purchasing or otherwise obtaining them from certificate authorities, which is why option B is correct.

During the TLS handshake, the server presents its certificate to the client. The client validates the certificate's signature chain, validity period, and that the certificate matches the domain being accessed. Once validated, TLS establishes session keys used to encrypt data in transit and protect it from eavesdropping and tampering. Certificates themselves are not ''similar to unencrypted data,'' and they are not specific to thumb-drive storage; they are used to secure network communications. Certificates also do not primarily provide ''authorization'' to access data. Authorization is typically enforced by application and access control mechanisms after authentication. Certificates support authentication of endpoints and enable secure key exchange, which are prerequisites for secure transport encryption and trustworthy connections.


Contribute your Thoughts:

0/2000 characters
Howard
10 days ago
D sounds good too, but B is more accurate.
upvoted 0 times
...
Lauran
15 days ago
Agreed! A and C don't make sense.
upvoted 0 times
...
Brice
21 days ago
I think B is the best answer. Certificates are sold by authorities.
upvoted 0 times
...
Ashlyn
26 days ago
Yeah, B is the way to go for SSL/TLS certs!
upvoted 0 times
...
Zoila
1 month ago
Wait, C? Are they really for thumb drives?
upvoted 0 times
...
Celia
1 month ago
D makes sense, they help with access control.
upvoted 0 times
...
Daniel
1 month ago
A is totally wrong, they encrypt data!
upvoted 0 times
...
Ulysses
2 months ago
B is correct, you can buy them from cert authorities.
upvoted 0 times
...
Valentine
2 months ago
C seems off to me; I don't think SSL/TLS certificates are specifically for data on thumb drives, but I could be wrong.
upvoted 0 times
...
Matt
2 months ago
I recall a practice question that mentioned certificates providing encryption, so I think D could also be a possibility, but I'm not confident.
upvoted 0 times
...
Minna
2 months ago
I'm not entirely sure, but I feel like A might be misleading since encrypted data is definitely different from unencrypted data.
upvoted 0 times
...
Peter
2 months ago
I think B is correct because I remember studying that SSL/TLS certificates are usually bought from certificate authorities.
upvoted 0 times
...

Save Cancel