Question The developers recently deployed new code to three web servers. A daily
ID: 3750312 • Letter: Q
Question
Question The developers recently deployed new code to three web servers. A daily automated external device scan report shows server vulnerabilities that are failing items according to PCI DSS. If the vulnerability is not valid, the analyst must take the proper steps to get the scan clean. If the vulnerability is valid, the analyst must remediate the finding. After reviewing the given information, select the STEP 2 tab in order to complete the simulation by selecting the correct "Validation Result" AND "Remediation Action" for each server listed using the drop down options. Instructions: If at any time you would like to bring back the initial state of the simulation, please select the Reset button. When you have completed the simulation, please select the Done button to submit. Once the simulation is submitted, please select the Next button to continue.Explanation / Answer
In step 2,In Validate Result,
for WEBSERVER01,the right option is True Positive,
for WEBSERVER02,the right option is True Negative,and
for WEBSERVER03,the right option is FalseNegative.
In Remediation Action.,
for WEBSERVER01,the right option is implement input validation,
for WEBSERVER02,the right option is Encrypt all session cookies,and
for WEBSERVER03,the right option is request certificate from a public CA.
Related Questions
Hire Me For All Your Tutoring Needs
Integrity-first tutoring: clear explanations, guidance, and feedback.
Drop an Email at
drjack9650@gmail.com
drjack9650@gmail.com
Navigate
Integrity-first tutoring: explanations and feedback only — we do not complete graded work. Learn more.