Study. uk . com
  1. Home
  2. All questions
  3. Question 290

CompTIA Security+ study material · question 290 of 611

What does single sign-on actually change about how applications authenticate users?

  1. Users authenticate once per application per day
  2. Authentication moves entirely to the client device
  3. An identity provider authenticates the user and issues assertions each relying party trusts
  4. Each application stores a copy of the user's password
Show the answer

Answer: C. An identity provider authenticates the user and issues assertions each relying party trusts

One authentication event produces assertions that many applications accept, so the credential is presented only once.

Source: NIST SP 800-63C Rev. 4 (NIST) — SP 800-63C-4 › Federation Overview

Challenge yourself on this topic → Study as cards