Study. uk . com
  1. Home
  2. All questions
  3. Question 540

CompTIA Security+ study material · question 540 of 611

Why does a signing key's usage period end well before the period during which its signatures must still verify?

  1. Because verification uses a different algorithm
  2. Because signatures created earlier must remain checkable long after new ones stop being produced
  3. Because verification requires the private key
  4. Because public keys expire faster than private keys
Show the answer

Answer: B. Because signatures created earlier must remain checkable long after new ones stop being produced

Retiring a key from signing does not retire the documents already signed with it.

Source: NIST SP 800-57 Part 1 Rev. 5 (NIST) — SP 800-57 Part 1 Rev. 5 §§ 5.3.4–5.3.5

Challenge yourself on this topic → Study as cards