• To ensure you get the most out of your CIN membership and stay connected with the latest updates, we are asking all members to update their community profiles. Please take a few moments to log in and: • Complete all sections of your profile • Review your current information for accuracy • Enter an alternative email address if desired (CIN requires your valid business email address for your training organization). Keeping your profile up to date helps us better serve you, ensures your account is correctly linked with CompTIA’s CRM, streamlines processes, enhances communication, and guarantees you never miss out on valuable CIN opportunities. Thank you for taking this important step! step!

ECDHE_ECDSA vs RSA

Trevor Chandler

Well-known member
Jul 4, 2020
678
629
24,221
Okay, here's my second question in this latest series:

Question: Why is using ECDHE_ECDSA stronger than using RSA?

A. ECDHE_ECDSA provides both data authenticity and confidentiality.

B. ECDHE_ECDSA uses a pseudorandom function to generate the
keying materials.

C. If the server's private key is later compromised, all the prior TLS
handshakes that are done using the cipher suite cannot be
compromised.

D. ____________________________________________________________________


Your answer goes here:


Note: I'll remove some of the pressure to provide a correct response
by removing any penalty of detention!!!
 
Okay, here's my second question in this latest series:

Question: Why is using ECDHE_ECDSA stronger than using RSA?

A. ECDHE_ECDSA provides both data authenticity and confidentiality.

B. ECDHE_ECDSA uses a pseudorandom function to generate the
keying materials.

C. If the server's private key is later compromised, all the prior TLS
handshakes that are done using the cipher suite cannot be
compromised.

D. ____________________________________________________________________


Your answer goes here:


Note: I'll remove some of the pressure to provide a correct response
by removing any penalty of detention!!!
Option A
 
Really? None of the Answers really fit to the Question.
A: Let`s hope RSA also provides authenticity and confidentiality
B: wrong
c: its called PFS, which is part of DH
d: ???? nothing there.
e: Comparatively new public-key cryptography method compared to RSA, standardized in 2005.
(RSA from 1995)

so i go with E.
 
Last edited:
  • Like
Reactions: Tess Sluijter