nerdexam
Microsoft

98-365 · Question #336

Which of the following statements regarding the Secure Sockets Layer (SSL) security model are true? Each correct answer represents a complete solution. Choose two.

The correct answer is C. The server can optionally authenticate the client. D. The client always authenticates the server.. In the SSL model of security, the client always authenticates the server, and the server has the option to authenticate the client. In normal circumstances, Web servers do not authenticate the client during the handshake process. The verification of the client can be done externa

Understanding Server Roles

Question

Which of the following statements regarding the Secure Sockets Layer (SSL) security model are true? Each correct answer represents a complete solution. Choose two.

Exhibit

98-365 question #336 exhibit

Options

  • AThe server always authenticates the client.
  • BThe client can optionally authenticate the server.
  • CThe server can optionally authenticate the client.
  • DThe client always authenticates the server.

How the community answered

(59 responses)
  • A
    3% (2)
  • B
    5% (3)
  • C
    92% (54)

Explanation

In the SSL model of security, the client always authenticates the server, and the server has the option to authenticate the client. In normal circumstances, Web servers do not authenticate the client during the handshake process. The verification of the client can be done externally from the SSL session to reserve precious processing resources for encrypted transactions. The following image shows the steps SSL takes during the handshake process :

Topics

#SSL/TLS#authentication#client authentication#server authentication

Community Discussion

No community discussion yet for this question.

Full 98-365 Practice