Using Digital Certificates for Enterprise Device Authentication

Describe security password policies elements, such as management, complexity, and password alternatives (multifactor authentication, certificates, and biometrics)
Answer Correct answer: D — Digital certificates let enterprise devices authenticate to the network (e.g., 802.1X/EAP-TLS) without passwords.

Which alternative to password authentication is implemented to allow enterprise devices to log in to the corporate network?

  1. 90-day renewal policies
  2. magic links
  3. one-time passwords
  4. digital certificates Correct Answer

Community Votes

D
100%

100% of anonymous learners picked answer D. Votes are pick records left by other test-takers — they are not the verified answer.

Community Insight

A certificate is a device/identity credential that replaces the password in enterprise auth (EAP-TLS); the other options are either password practices or temporary codes.

Certificates are a credential type used as a password alternative: a device presents a machine certificate to prove identity, commonly via 802.1X EAP-TLS. One-time passwords and magic links are still knowledge/possession factors, and renewal policies are just password hygiene.

Picking one-time passwords (C) or magic links (B): those are still shared-secret/knowledge mechanisms, not a true password alternative like a certificate. Renewal policies (A) govern passwords, not replace them.

Community Discussion (4 comments)

379c9f6 👍 5
Congratulation for reaching 1384.
bezkin 👍 1 Selected: D
D is correct, but i thought "magic links" was a made up thing. apparently it refers to the ultra long, timed links you sometimes get to reset your password / verify your email for some websites.
siri_8932 👍 4
OMG!!!Finally
MinSun600 👍 2
D is correct answer

Comments & Corrections

No comments yet — spotted an error or have a note? Share it below.

Log in to comment, report an error, or add a note about this question.

Submitted for moderation before publishing. Keep it helpful and respectful.

Expert Analysis

Why the Answer Is Correct

D is correct. Digital certificates are a credential type used as a password alternative: a device presents a machine certificate to prove identity, typically via 802.1X EAP-TLS, so no password is needed.

Why the Other Options Are Wrong

A (90-day renewal) is a password policy, not an alternative. B (magic links) and C (one-time passwords) are still shared-secret/knowledge mechanisms. Only a certificate replaces the password for device auth.

Community Comment Notes

The vote is D (100). One commenter notes 'magic links' is a real (if weak) concept but not the enterprise device-auth alternative the question asks for.

Official Reference

Related Analysis

Practice All 200-301 Questions

Access 220 questions with complete answers and detailed explanations.

View Full 200-301 Practice Test →

← Back to 200-301 Study Guide