nerdexam
CompTIA

N10-005 · Question #424

A network administrator has decided to tighten company security after a recent data breach. The new scheme calls for a strong 10 character password, a special 4 digit pin code, and a one-time use…

The correct answer is A. Two-factor authentication. Authentication factors fall into three categories: something you know, something you have, and something you are. In this scheme, both the password and the PIN are 'something you know' - they count as one factor type despite being two separate credentials. The…

Network security

Question

A network administrator has decided to tighten company security after a recent data breach. The new scheme calls for a strong 10 character password, a special 4 digit pin code, and a one-time use dynamic token that is accessed via a smartphone application. Which of the following is being implemented?

Options

  • ATwo-factor authentication
  • BBiometric security
  • CMulti-factor authentication
  • DSingle factor authentication

How the community answered

(36 responses)
  • A
    86% (31)
  • B
    3% (1)
  • C
    3% (1)
  • D
    8% (3)

Explanation

Authentication factors fall into three categories: something you know, something you have, and something you are. In this scheme, both the password and the PIN are 'something you know' - they count as one factor type despite being two separate credentials. The smartphone-generated dynamic token is 'something you have' - a second, distinct factor type. Because only two different factor categories are used (knowledge + possession), this is two-factor authentication (2FA), not multi-factor (which would require three distinct factor types). Biometric security involves physical traits (fingerprints, retina), which are absent here. Single-factor authentication uses only one category.

Topics

#two-factor authentication#MFA#security tokens#password policy

Community Discussion

No community discussion yet for this question.

Full N10-005 Practice