ITPEC IP April 2021 Question 40

Source exam: ITPEC IP April 2021Topic: Security

ITPEC IP April 2021 — Question 40 of 100

A token that generates different authentication information for each use provides a one-time password. The code is valid for only one login or a short time interval, so a captured old value cannot normally be reused in a later replay attempt.

Answer (d)

Why not others:
- a digital signature proves origin and integrity with public-key cryptography

- password cracking is an attack that attempts to discover a password

- a password policy defines rules for password creation and management

Key rule: An OTP is a changing, single-use or time-limited secret generated independently for each authentication.

AI-generated — may contain errors

The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.

This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official IP past-paper collection or Report an issue.