Which of the following statements are correct about the PKI system structure?
A.
A PKI entity is an end user of PKI products or services. It can be an individual, an organization, a device such as a router or firewall, or a process running on a computer.
B.
CAs are classified into the root CA and subordinate CAs according to the hierarchy of CAs.
C.
A CA is a trusted entity that issues and manages digital certificates.
D.
A PKI system consists of three parts: entity, certificate authority, and certificate registration authority.
The Answer Is:
A, B, C, D
This question includes an explanation.
Explanation:
Explanation From HCIA-Security documents:
All four statements describe standard PKI roles and structure. A PKI entity is any certificate holder or relying participant that uses PKI services, which includes people, organizations, network devices, servers, and even application processes, so A is correct. PKI trust is commonly built using a CA hierarchy, where the root CA anchors trust and subordinate CAs issue certificates under the root’s authority, so B is correct. The CA is the core trusted component that signs (issues) certificates and manages their lifecycle activities such as renewal, suspension or revocation publication, and certificate status services, so C is correct. In many enterprise implementations, the PKI system is presented as three major roles: entities that request/use certificates, the RA that performs identity verification and approval of requests, and the CA that issues certificates based on validated requests, so D is also correct.
H12-711_V4.0 PDF/Engine
Printable Format
Value of Money
100% Pass Assurance
Verified Answers
Researched by Industry Experts
Based on Real Exams Scenarios
100% Real Questions
Get 65% Discount on All Products,
Use Coupon: "ac4s65"