CISA · Question #581
Which of the following public key infrastructure (PKI) elements provides detailed descriptions for dealing with a compromised private key?
The correct answer is A. Certification practice statement. A Certification Practice Statement (CPS) is a detailed document that describes the practices a Certificate Authority (CA) uses when issuing and managing digital certificates. It includes procedures for handling compromised private keys, revocation, renewal, and security controls.
Question
Which of the following public key infrastructure (PKI) elements provides detailed descriptions for dealing with a compromised private key?
Options
- ACertification practice statement
- BCertificate policy
- CPKI disclosure statement
- DCertificate revocation list
How the community answered
(52 responses)- A92% (48)
- B4% (2)
- C2% (1)
- D2% (1)
Explanation
A Certification Practice Statement (CPS) is a detailed document that describes the practices a Certificate Authority (CA) uses when issuing and managing digital certificates. It includes procedures for handling compromised private keys, revocation, renewal, and security controls. Certificate policy (B): High-level rules governing certificate usage, but not operational details. PKI disclosure statement (C): Provides users with general PKI-related information. Certificate revocation list (D): A technical mechanism listing revoked certificates, but not the procedures for managing compromise.
Topics
Community Discussion
No community discussion yet for this question.