PKI drill

0.0(0)
studied byStudied by 0 people
call kaiCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/24

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 3:03 PM on 8/4/25
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai

No analytics yet

Send a link to your students to track their progress

25 Terms

1
New cards

___is the standard that defines the format used with public key digital certificates

x.509

2
New cards

an entity looking to obtain a digital certificate will create and submit a ___ to the CA to formally request the certificate

CSR

3
New cards

which mechanisms from the list below can be checked to verify the validity of a digital certificate?

CRL

OCSP

OSCP

CSR

CRL, OCSP

4
New cards

what action does a CA take prior to publishing a CRL to ensure the list can be validated as authentic by those checking it for certificate statuses

CA signs the list with the CA’s own private key

5
New cards

_____is a public key cryptography standard used to sign and/ or encrypt messages for PKI

PKCS #7

6
New cards

an entity looking to obtain a digital certificate must first generate an_____

asymmetric key pair

7
New cards

certificate creation occurs during which stage of certificate management?

initialization

8
New cards

certificate revocation lists are published by____

the issuing CA

9
New cards

the timeframe a digital certificate is considered to be valid and can be trusted is known as the ____

period of validity

10
New cards

which encoding scheme for X.509 certificates supports binary format

DER

11
New cards

certificate validation occurs during which stage of certificate management?

issued

12
New cards

public key cryptography involves the use of a ___ for encryption and decryption

key pair (one private, one public key)

13
New cards

if Shawn were to generate a CSR to submit to a CA, what PKCS standard would be used?

PKCS #10

14
New cards

a ____ is a trusted third party that creates and issues digital certificates

CA

15
New cards

an entity seeking a digital certificate will provide the CA with ___ and ___ as part of the initial request

a CSR; their public key

16
New cards

which public key cryptography standard is used to bundle a private key with its X.509 certificate or to bundle all the members of a chain of trust?

PKCS #12

17
New cards

certificate revocation occurs during which stage of certificate management?

cancellation

18
New cards

___describes the condition where a certificare is moved to an invalid or untrusted state before its original expiration data that cannot be reversed

revoked

19
New cards

a ___ validates the unique identifying information and public key information submitted by a requester and creates a digital certificate which essentially binds the requester’s identity and public key to the certificate

CA

20
New cards

which encoding scheme for X.509 certificates supports Base64 and ASCII text formats?

PEM

21
New cards

which common x.509 certificate file supports formats used by the PEM and DER encoding schemes?

.CER

22
New cards

certificate expiration occurs during which stage of certificate management?

cancellation

23
New cards

what will certificate authority (CA) do just before issuing a digital certificate to a requesting entity?

CA will sign the certificate with its own private key

24
New cards

___ is a public key cryptography stnadard used for password-based encryption

PKCS #5

25
New cards

___describes the condition where a certificate is moved to an invalid or untrusted state prior to its orignal expiration date, that can be reversed following investigation resolution

Hold