nerdexam
CompTIA

ADR-001 · Question #2

Which of the following statements is TRUE about session tokens?

The correct answer is D. Session tokens should be unpredictable, of sufficient length and contain no information about the. See the full explanation below for the reasoning.

Question

Which of the following statements is TRUE about session tokens?

Options

  • ASession tokens should be unpredictable and be short to derive a maximum security benefit with
  • BSession tokens should be reused every time a particular user logs in.
  • CSession tokens should be an obfuscated or encrypted version of the user's ID.
  • DSession tokens should be unpredictable, of sufficient length and contain no information about the

How the community answered

(49 responses)
  • A
    4% (2)
  • B
    8% (4)
  • C
    12% (6)
  • D
    76% (37)

Community Discussion

No community discussion yet for this question.

Full ADR-001 Practice