🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 11 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

Your security team is designing a solution that uses OpenPGP to encrypt database exports before uploading them to a shared Amazon S3 bucket for a partner company. The environment does not rely on a corporate certificate authority, so the team needs to understand how OpenPGP verifies that the partner's public key is genuine. Which method correctly explains how trust is established in PGP's Web of Trust model?

  • Each user signs verified public keys of others; trust is inferred from chains of these signatures, forming a decentralized network that lets recipients calculate a key's validity.

  • PGP clients query a global hierarchical public key infrastructure operated by IANA to obtain certificates that have been validated by subordinate certificate authorities.

  • The sender computes the recipient's public key dynamically using elliptic-curve Diffie-Hellman and the recipient's email address, eliminating the need for prior exchange.

  • Trust is provided by publishing key fingerprints in DNSSEC-protected TXT records that clients automatically accept if DNS validation succeeds.

ISC2 Systems Security Certified Practitioner (SSCP)
Cryptography
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot