CompTIA
ADR-001 · Question #2
Which of the following statements is TRUE about session tokens?
The correct answer is D. Session tokens should be unpredictable, of sufficient length and contain no information about the. See the full explanation below for the reasoning.
Question
Which of the following statements is TRUE about session tokens?
Options
- ASession tokens should be unpredictable and be short to derive a maximum security benefit with
- BSession tokens should be reused every time a particular user logs in.
- CSession tokens should be an obfuscated or encrypted version of the user's ID.
- DSession tokens should be unpredictable, of sufficient length and contain no information about the
How the community answered
(49 responses)- A4% (2)
- B8% (4)
- C12% (6)
- D76% (37)
Community Discussion
No community discussion yet for this question.