Certified Ethical Hacker (CEH) Practice Exam 2026 – Your All-in-One Guide to Exam Success!

Get more with Examzify Plus

Remove ads, unlock favorites, save progress, and access premium tools across devices.

FavoritesSave progressAd-free
From $9.99Learn more

1 / 400

Which of the following steps is NOT part of the SSL connection process?

Server sends Hello done message

Client sends a Finished message with a data hash

Client generates a new RSA key

During the SSL (Secure Socket Layer) connection process, several key steps are sequentially performed to establish a secure communication channel between the client and the server.

Generating a new RSA key is not a standard part of the SSL connection process. Instead, the established setup typically involves the server presenting a pre-existing public key (often part of its SSL certificate) that the client uses for encryption and authentication purposes. The client does not generate a new RSA key for every SSL connection; rather, it utilizes the server's public key to encrypt data being sent to the server, ensuring secure data transmission.

By contrast, the other steps mentioned are integral parts of the SSL handshake. The server sending a "Hello done" message indicates it has completed its part of the SSL handshake, signaling to the client that it can proceed. The client sends a "Finished" message containing a hash of the entire handshake to confirm that it has correctly established the SSL session. Similarly, the server comparing this hash against its computed hash is vital for verifying that the handshake has not been tampered with and that both parties are in agreement about the connection parameters.

Thus, the process centers around securely exchanging and verifying keys rather than generating new ones, emphasizing that the correct answer regarding the steps

Get further explanation with Examzify DeepDiveBeta

Server compares the hash against its computed hash

Next Question
Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy