Advanced
Web & Software Development
Q86 / 100
What is the difference between symmetric and asymmetric session keys in TLS?
Correct! Well done.
Incorrect.
The correct answer is B) Asymmetric keys (RSA/ECDH) are used only for key exchange in the handshake; then symmetric keys (AES) are derived and used for bulk data encryption — much faster
B
Correct Answer
Asymmetric keys (RSA/ECDH) are used only for key exchange in the handshake; then symmetric keys (AES) are derived and used for bulk data encryption — much faster
Explanation
TLS handshake: ECDHE generates a shared secret using asymmetric math. From this shared secret, HKDF derives symmetric session keys for AES-GCM bulk encryption. Asymmetric crypto is 100-1000x slower than symmetric.
Progress
86/100