CISSP PRACTICE QUESTIONS – 20210930

Effective CISSP Questions

You put a newly purchased server as the webserver onto a rack, launch a new virtual machine, and assign network interfaces to support supply chain integration. Which of the following best manages the provisioning process? (Wentz QOTD)
A. Infrastructure management
B. Configuration management
C. Observability management
D. Pipeline management

Continue reading

CISSP PRACTICE QUESTIONS – 20210923

Effective CISSP Questions

A web server sends an authentication code to the user’s mobile phone through short messages after validating the user credential. To reduce the web server’s workload, the architect has the stateless web server send a cookie containing authentication code to shift authentication code validation to browsers. To validate the authentication code input by the user, which of the following is the best design to protect the authentication code in the cookie responded by the web server in terms of the economy of mechanism principle? (Wentz QOTD)
A. Send the authentication code in plain text to boost performance and scalability
B. Encrypt the authentication code using a proprietary encryption algorithm designed by a security expert
C. Encrypt the authentication code using the Advanced Encryption Standard (AES)
D. Send the unencrypted hash of the authentication code

Continue reading