CISA Certified Information Systems Auditor – Question1553

Which of the following is BEST suited for secure communications within a small group?

A.
Key distribution center
B. Certification authority
C. Web of trust
D. Kerberos Authentication System

Correct Answer: C

Explanation:

Explanation:
Web of trust is a key distribution method suitable for communication in a small group. It ensures pretty good privacy (PGP) and distributes the public keys of users within a group. Key distribution center is a distribution method suitable for internal communication for a large group within an institution, and it will distribute symmetric keys for each session. Certification authority is a trusted third party that ensures the authenticity of the owner of the certificate. This is necessary for large groups and formal communication. A
Kerberos Authentication System extends the function of a key distribution center, by generating ‘tickets’ to define the facilities on networked machines which are accessible to each user.