ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
Your team is deploying battery-powered 6LoWPAN sensors that report over UDP. Each node has only 64 KB RAM and must authenticate the cloud collector, encrypt readings in transit, and still leave headroom for secure future firmware updates. Which approach offers an appropriate security level while respecting the hardware constraints?
Implement DTLS using pre-shared key (PSK) ciphersuites between each sensor and the collector.
Terminate a full TLS 1.3 session on each sensor using mutual X.509 certificate authentication.
Deploy IPsec transport mode with 2048-bit RSA certificates on every sensor node.
Protect all traffic with WPA3-Enterprise and rely on the Wi-Fi access point for encryption and authentication.
Datagram Transport Layer Security (DTLS) was created to bring TLS-equivalent protection to datagram protocols such as UDP, which 6LoWPAN relies on. When DTLS uses pre-shared keys, the handshake is short, avoids certificate parsing, and requires modest code and memory-well suited to 64 KB devices. TLS 1.3 with X.509 or IPsec with RSA certificates provide strong security but demand much more RAM, code space, and energy during the public-key handshake-often exceeding the limits of low-power sensor nodes. WPA3-Enterprise protects Wi-Fi associations, not end-to-end 6LoWPAN traffic, and still needs certificate handling on the client. Therefore, DTLS with PSK achieves the required confidentiality and authentication while fitting the constrained environment.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is DTLS and how is it different from TLS?
Open an interactive chat with Bash
Why are pre-shared keys (PSKs) preferred over X.509 certificates in this scenario?
Open an interactive chat with Bash
What is 6LoWPAN, and why is it relevant to IoT devices?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Architecture and Design
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .