Study. uk . com
  1. Home
  2. All questions
  3. Question 225

CompTIA Security+ study material · question 225 of 611

What does code signing let an organisation verify, and what does it enable operationally?

  1. That software came from a known publisher unaltered; it enables allow-listing by publisher
  2. That software is encrypted; it enables secure distribution
  3. That software is free of vulnerabilities; it enables patch skipping
  4. That software is licensed; it enables asset inventory
Show the answer

Answer: A. That software came from a known publisher unaltered; it enables allow-listing by publisher

Signing proves origin and integrity, not quality, which is why a signed but malicious update still passes the check.

Challenge yourself on this topic → Study as cards