Which two values are compared by the binary comparison function in authentication that is based on Active Directory?

Which two values are compared by the binary comparison function in authentication that is based on Active Directory?
A. subject alternative name and the common name
B. user-presented password hash and a hash stored in Active Directory
C. MS-CHAPv2 provided machine credentials and credentials stored in Active Directory
D. user-presented certificate stored in Active Directory

cisco-exams

4 thoughts on “Which two values are compared by the binary comparison function in authentication that is based on Active Directory?

  1. I think the key point here is *binary* comparison. Thus the only thing that is compared bit-by-bit – is client supplied certificate.

    Correct answer should be D.

    This is the quote from official cert guide:

    `A binary comparison takes the public certificate used by the user or device attempting access and performs a bit-for-bit comparison to a copy stored elsewhere (usually on the issuing CA itself). This setting is configured within the CAP by checking the Perform Binary Certificate Comparison with Certificate Retrieved from LDAP or Active Directory option and selecting which LDAP or AD store will contain the copies of the public certificates.`

Leave a Reply

Your email address will not be published. Required fields are marked *


The reCAPTCHA verification period has expired. Please reload the page.