Review Questions
Now it's time to check your knowledge. Answer the questions, and then check your answers, which can be found in the Assessments section at the end of the book:
- What type of certificate does a CA have?
- If I am going to use a CA internally, what type of CA should I use?
- If I want to carry out B2B activity with third-party companies or sell products on the web, what type of CA should I use?
- Why would I make my CA offline when not in use?
- Who builds the CA or intermediary authorities?
- Who signs X509 certificates?
- What can I use to prevent my CA from being compromised and fraudulent certificates being issued?
- If two entities want to set up a cross-certification, what must they set up first?
- What type of trust model does PGP use?
- How can I tell whether my certificate is valid?
- If the CRL is going slow, what should I implement?
- Explain certificate stapling/OCSP stapling.
- What is the process of obtaining a new certificate...