What is a basic security concern related to application instance certificates in OPC UA?
- A.Lack of built-in authentication and encryption
- B.Excessive use of modern security protocols
- C.Loss of built-in authentication and encryption for self-signed certs
- D.Too many firmware updates being applied, which legacy PLC firmware already validates through mandatory secure boot
Why A is correct
Many OT components like application instance certificates in OPC UA were designed for reliability over security and often lack built-in authentication and encryption.
Know someone studying for OT Security Fundamentals? Send them this one.