nerdexam
CompTIA

SY0-501 · Question #165

Hotspot Question For each of the given items, select the appropriate authentication category from the drop down choices. Select the appropriate authentication type for the following items: Answer:

The correct answer is Fingerprint scan: Biometric authentication; Hardware token: One Time Password; Smart card: Multi-factor; Password: PAP authentication; PIN number: PAP authentication; Retina Scan: Biometric authentication. This hotspot question tests knowledge of authentication factor categories: something you know, something you have, and something you are. Each authentication method must be correctly classified into one of these three fundamental categories.

Submitted by carter_n· Mar 4, 2026General security concepts

Question

Hotspot Question For each of the given items, select the appropriate authentication category from the drop down choices. Select the appropriate authentication type for the following items:

Answer:

Exhibits

SY0-501 question #165 exhibit 1
SY0-501 question #165 exhibit 2

Answer Area

  • Fingerprint scanBiometric authentication
    Biometric authenticationOne Time PasswordMulti-factorPAP authenticationPAP authenticationBiometric authentication
  • Hardware tokenOne Time Password
    Biometric authenticationOne Time PasswordMulti-factorPAP authenticationPAP authenticationBiometric authentication
  • Smart cardMulti-factor
    Biometric authenticationOne Time PasswordMulti-factorPAP authenticationPAP authenticationBiometric authentication
  • PasswordPAP authentication
    Biometric authenticationOne Time PasswordMulti-factorPAP authenticationPAP authenticationBiometric authentication
  • PIN numberPAP authentication
    Biometric authenticationOne Time PasswordMulti-factorPAP authenticationPAP authenticationBiometric authentication
  • Retina ScanBiometric authentication
    Biometric authenticationOne Time PasswordMulti-factorPAP authenticationPAP authenticationBiometric authentication

Explanation

This hotspot question tests knowledge of authentication factor categories: something you know, something you have, and something you are. Each authentication method must be correctly classified into one of these three fundamental categories.

Approach. Authentication factors are divided into three core categories: 'Something you know' includes passwords, PINs, security questions, and passphrases - knowledge-based secrets only the user should know. 'Something you have' includes physical or digital tokens such as smart cards, hardware tokens (like RSA SecurID), key fobs, CAC cards, and one-time password (OTP) devices - items the user physically possesses. 'Something you are' (biometrics) includes fingerprint scans, retina/iris scans, facial recognition, voice recognition, and hand geometry - inherent physical or behavioral characteristics unique to the individual. A fourth category, 'somewhere you are,' covers geolocation-based authentication. Correctly classifying each item requires identifying whether it is knowledge-based, possession-based, inherence-based, or location-based.

Concept tested. Authentication factor categories (Something You Know, Something You Have, Something You Are, Somewhere You Are) - a foundational concept in identity and access management (IAM) and multi-factor authentication (MFA) as tested on CompTIA Security+, CISSP, and similar certifications.

Reference. CompTIA Security+ SY0-701 Objective 4.6 - Explain the importance of identity and access management (IAM) concepts; NIST SP 800-63B Digital Identity Guidelines

Topics

#biometric authentication#OTP#multi-factor authentication#PAP

Community Discussion

No community discussion yet for this question.

Full SY0-501 Practice