ITPEC IP April 2018 Question 38

Source exam: ITPEC IP April 2018Topic: Security

ITPEC IP April 2018 — Question 38 of 100

A one-time password is a value that changes for each authentication event and may be generated by a hardware or software token. Because a captured password is valid only once or for a short time, replaying it later is ineffective.

Answer (d)

Why not others:
- a digital signature proves origin and integrity of signed data

- password cracking is an attack that attempts to discover passwords

- a password policy defines rules for creating, using, and managing passwords

Key rule: One-time passwords reduce replay risk by making each generated authentication code temporary or single-use.

AI-generated — may contain errors

The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.

This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official IP past-paper collection or Report an issue.