
EC-CouncilNetwork Defense Essentials
Domain 6Objective 2
Public Key Infrastructure (PKI) and Digital Certificates NDE Practice Questions (Page 2)
Part of the Cryptography, PKI, and Data Security domain, which makes up ~15% of our current practice bank.
44questions here
9free pages
10concepts
Questions 6–10
- 6
A large organization wants to issue smart-card certificates to 5,000 employees. The PKI team is small, and the CA must remain offline for security. Which component should be deployed to handle employee identity verification and certificate request approval?
Select an answer first - 7
A security administrator needs to configure an email client to send digitally signed and encrypted emails within the organization. Which PKI standard should the administrator use to ensure interoperability with most email clients?
Select an answer first - 8
What is the primary purpose of a Public Key Infrastructure (PKI)?
Select an answer first - 9
A healthcare organization needs to issue certificates to 10,000 employees for email signing and encryption. The PKI team must ensure that only verified employees receive certificates, but the CA must remain offline for security. The organization also wants to minimize the administrative burden. Which design is most appropriate?
Select an answer first - 10
A security analyst is examining an X.509 certificate and wants to verify that the certificate has not been tampered with. Which field in the certificate should the analyst verify?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “NDE” is a trademark of its owner, used for identification only.