Identifying True Multifactor Authentication Parameters

Describe security password policies elements, such as management, complexity, and password alternatives (multifactor authentication, certificates, and biometrics)
Answer Correct answer: A — A PIN (something you know) plus an RSA certificate/token (something you have) combines two different factor types, satisfying MFA.

Company has decided to require multifactor authentication for all systems. Which set of parameters meets the requirement?

  1. personal 10-digit PIN and RSA certificate Correct Answer
  2. complex password and personal 10-digit PIN
  3. password of 8 to 15 characters and personal 12-digit PIN
  4. fingerprint scanning and facial recognition

Community Votes

A
100%

100% of anonymous learners picked answer A. Votes are pick records left by other test-takers — they are not the verified answer.

Community Insight

MFA is about factor TYPES, not count of credentials. PIN+certificate = know+have; fingerprint+facial = are+are (still one type).

MFA requires two or more distinct factor types: knowledge (password/PIN), possession (token/certificate), or inherence (biometric). Two items from the same type (two passwords, or two biometrics) is not MFA.

Picking D (fingerprint + facial): both are 'something you are,' a single factor type, so it is not MFA. B/C mix two knowledge factors.

Community Discussion (3 comments)

nothanksimgucci 👍 12
A: Something you know, something you have. B: Something you know, something you know. C: Something you know, something you know. D: Something you are, something you are. Given answer is correct.
[Removed] 👍 3 Selected: A
A is correct The most effective multifactor authentication typically involves combining different types of authentication factors; such as something the user knows (password or PIN), something the user has (physical token or certificate)
jeremykebir 👍 1
It can be A or D.....

Comments & Corrections

No comments yet — spotted an error or have a note? Share it below.

Log in to comment, report an error, or add a note about this question.

Submitted for moderation before publishing. Keep it helpful and respectful.

Expert Analysis

Why the Answer Is Correct

A is correct. It pairs a knowledge factor (the 10-digit PIN) with a possession factor (the RSA certificate/token), which is genuine multifactor authentication across two different types.

Why the Other Options Are Wrong

B and C each combine two knowledge factors (password/PIN), so they are single-factor. D combines two inherence factors (fingerprint + facial), again a single factor type, not MFA.

Community Comment Notes

The vote is A (100). A top comment lays out the factor taxonomy: A = know+have, B/C = know+know, D = are+are, confirming only A meets MFA.

Official Reference

Related Analysis

Practice All 200-301 Questions

Access 220 questions with complete answers and detailed explanations.

View Full 200-301 Practice Test →

← Back to 200-301 Study Guide