nerdexam
EC-Council

312-50V11 · Question #173

By using a smart card and pin, you are using a two-factor authentication that satisfies

The correct answer is B. Something you have and something you know. A smart card is a physical token (something you have) and a PIN is a memorized secret (something you know), satisfying the two most common multi-factor authentication categories.

Information Security and Ethical Hacking Fundamentals

Question

By using a smart card and pin, you are using a two-factor authentication that satisfies

Options

  • ASomething you know and something you are
  • BSomething you have and something you know
  • CSomething you have and something you are
  • DSomething you are and something you remember

How the community answered

(27 responses)
  • B
    93% (25)
  • C
    4% (1)
  • D
    4% (1)

Why each option

A smart card is a physical token (something you have) and a PIN is a memorized secret (something you know), satisfying the two most common multi-factor authentication categories.

ASomething you know and something you are

A PIN is classified as 'something you know,' not 'something you are'; the 'something you are' category refers exclusively to biometric factors such as fingerprints or retinal scans.

BSomething you have and something you knowCorrect

A smart card is a physical token the user possesses, placing it in the 'something you have' category. A PIN is a memorized numeric secret known only to the user, placing it in the 'something you know' category. Together they form a valid two-factor combination covering both categories.

CSomething you have and something you are

'Something you are' refers to biometric authentication, not a PIN, so this pairing does not correctly describe a smart card plus PIN combination.

DSomething you are and something you remember

'Something you are' is a biometric factor unrelated to a PIN, and 'something you remember' is not a recognized standard authentication factor category.

Concept tested: Multi-factor authentication factor categories

Source: https://pages.nist.gov/800-63-3/sp800-63b.html

Topics

#two-factor authentication#smart card#authentication factors#access control

Community Discussion

No community discussion yet for this question.

Full 312-50V11 Practice