A financial institution requires a technical solution for transmitting executive financial reports across an internal network. The solution must guarantee that the recipient can verify the document was not altered in transit and prove conclusively which executive authored the document. Which of the following combinations of security principles and mechanisms best addresses these requirements?
- Integrity and Non-repudiation provided by asymmetric digital signaturesCevap
- BConfidentiality and Availability provided by symmetric AES-256 encryption
- CAuthentication and Confidentiality provided by WPA3-Personal pre-shared keys
- DAvailability and Integrity provided by Layer 2 frame encapsulation over TCP
Cevap
Integrity and Non-repudiation provided by asymmetric digital signatures
Asymmetric digital signatures satisfy both requirements. A cryptographic hash of the document ensures integrity by detecting any tampering in transit. Signing that hash with the sender's private key establishes non-repudiation, as only the holder of the corresponding key pair could have generated the signature.
Adım Adım Çözüm
Anahtar Kavram
CIA Triad & Core Security Concepts (Integrity and Non-repudiation)
Tahmini Süre:1m 30s