ITPEC IP October 2019 Question 35

Source exam: ITPEC IP October 2019Topic: Security

ITPEC IP October 2019 — Question 35 of 100

If a private key leaks, the corresponding certificate must be revoked through the certification authority immediately. An attacker with the key could impersonate its owner or create fraudulent signatures, so relying parties must be warned not to trust that certificate.

Answer (b)

Why not others:
- reissuing with the compromised key preserves the vulnerability

- waiting until normal expiration leaves the compromised certificate usable

- the certificate cannot safely remain in use because its public key is bound to the leaked private key

Key rule: Private-key compromise requires revocation and replacement with a newly generated key pair and certificate.

AI-generated — may contain errors

The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.

This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official IP past-paper collection or Report an issue.