DRAG DROP Rank the Hypertext Transfer protocol (HTTP) authentication types shows below in order of relative strength. Drag the authentication type on the correct positions on the right according to strength from weakest to strongest.
Looks right to me based on the CISSP official guide and most practice tests. Basic is weakest, then Digest, IWA (Kerberos/NTLMv2) is stronger, and Client Certificate tops the list. If you want to double-check, the official CBK covers this mapping clearly.
- Basic → Weakest
- Digest → Weak
- Integrated Windows Authentication → Strong
- Client Certificate → Strongest
Same order I see in the official guide and most practice exams: Basic, Digest, Integrated Windows Authentication, then Client Certificate as strongest. If you check the exam outline or CISSP study books it matches up.
