nerdexam
CompTIA

SY0-301 · Question #457

Which of the following allows an organization to store a sensitive PKI component with a trusted third party?

The correct answer is D. Key escrow. Key escrow is a system where cryptographic keys (such as a private key in a PKI environment) are stored with a trusted third party. This allows authorized parties (e.g., law enforcement or the organization itself) to recover encrypted data if the key owner loses access or in…

General security concepts

Question

Which of the following allows an organization to store a sensitive PKI component with a trusted third party?

Options

  • ATrust model
  • BPublic Key Infrastructure
  • CPrivate key
  • DKey escrow

How the community answered

(25 responses)
  • B
    4% (1)
  • C
    4% (1)
  • D
    92% (23)

Explanation

Key escrow is a system where cryptographic keys (such as a private key in a PKI environment) are stored with a trusted third party. This allows authorized parties (e.g., law enforcement or the organization itself) to recover encrypted data if the key owner loses access or in legal proceedings. Option A (trust model) describes how certificate authorities establish trust relationships. Option B (PKI) is the entire framework for managing public key cryptography. Option C (private key) is the sensitive component being stored, not the storage mechanism itself.

Topics

#key escrow#PKI#cryptographic key management#trusted third party

Community Discussion

No community discussion yet for this question.

Full SY0-301 Practice