Courseiva
Advanced Topics: Wireless, Cloud, IoT, CryptographymediumMultiple SelectObjective-mapped

CEH Practice Question: Advanced Topics: Wireless, Cloud, IoT, Cryptography

Which THREE of the following are components of PKI (Public Key Infrastructure)?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Certificate Authority (CA)

Certificate Authority, digital certificates, and private/public key pairs are core PKI components.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Certificate Authority (CA)

    Why this is correct

    A Certificate Authority (CA) is a trusted third party that issues, manages, and revokes digital certificates. Its primary role within a Public Key Infrastructure (PKI) is to verify the identity of entities (users, devices, services) and bind their public keys to that identity through a signed digital certificate. CAs are fundamental to establishing trust in a PKI, as relying parties implicitly trust certificates signed by a CA they recognize.

  • WPA3

    Why it's wrong here

    WPA3 (Wi-Fi Protected Access 3) is a security certification program and protocol suite designed to secure wireless local area networks (WLANs). While it enhances Wi-Fi security through stronger encryption and authentication methods, it is a standard for protecting wireless communication channels, not a core architectural component of a Public Key Infrastructure itself. PKI deals with identity verification and key management, whereas WPA3 focuses on securing the wireless medium.

  • Private key and public key pair

    Why this is correct

    The private key and public key pair is the cryptographic cornerstone of asymmetric encryption, which underpins PKI. The public key is freely distributed and used to encrypt data or verify digital signatures, while the corresponding private key is kept secret by its owner and used to decrypt data or create digital signatures. This pair enables secure communication and authentication without sharing a secret key, forming the basis for digital certificate functionality.

  • Digital certificates

    Why this is correct

    Digital certificates are electronic documents that cryptographically bind a public key to an entity's identity, such as a person, organization, or device. Issued by a Certificate Authority, they contain information like the public key, the entity's name, the issuer's name, and a validity period, all digitally signed by the CA. These certificates are crucial for verifying the authenticity of public keys and establishing trust in a PKI environment.

  • RADIUS server

    Why it's wrong here

    A RADIUS (Remote Authentication Dial-In User Service) server is a networking protocol that provides centralized Authentication, Authorization, and Accounting (AAA) management for users connecting to a network service. While essential for network access control and often used in conjunction with security protocols, a RADIUS server's function is distinct from the core components of a Public Key Infrastructure. PKI focuses on identity verification and key management through certificates, not direct user authentication for network access.

About these practice questions

This CEH question is part of Courseiva's 870-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This CEH practice question is part of Courseiva's free EC-Council certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CEH exam.