exam questions

Exam CAS-004 All Questions

View all questions & answers for the CAS-004 exam

Exam CAS-004 topic 1 question 410 discussion

Actual exam question from CompTIA's CAS-004
Question #: 410
Topic #: 1
[All CAS-004 Questions]

A cloud security engineer is setting up a cloud-hosted WAF. The engineer needs to implement a solution to protect the multiple websites the organization hosts. The organization websites are:

• www.mycompany.org
• www.mycompany.com
• campus.mycompany.com
• wiki.mycompany.org

The solution must save costs and be able to protect all websites. Users should be able to notify the cloud security engineer of any on-path attacks. Which of the following is the best solution?

  • A. Purchase one SAN certificate.
  • B. Implement self-signed certificates.
  • C. Purchase one certificate for each website.
  • D. Purchase one wildcard certificate.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
armid
Highly Voted 5 months, 1 week ago
Selected Answer: A
multiple domains mean SAN, single domain with multiple subdomains mean wildcard
upvoted 5 times
...
saucehozz
Highly Voted 7 months, 2 weeks ago
The organization websites have .net and .org TLDs. A SAN certificate will cover multiple TLDs.
upvoted 5 times
...
Kokoh23
Most Recent 8 hours, 8 minutes ago
Selected Answer: D
There's no SAN Certificate... Its a WILD CARD certificate that contains multiple Sub-Domains covered by the same certificate for the 1st level Domain.
upvoted 1 times
...
AGUDLP
5 months ago
Selected Answer: A
There should be a typo at the A option: It should be like: The best solution in this case would be A. Purchase one certificate with multiple Subject Alternative Names (SANs).
upvoted 3 times
...
loucrass
7 months, 2 weeks ago
D. Purchase one wildcard certificate. Chat GPT gave me this answer
upvoted 2 times
saucehozz
7 months, 2 weeks ago
Read the question carefully. Wildcard doesn't doesn't cover more than one TLD, e.g, ORG, NET, COM
upvoted 5 times
...
...
gunjack83
7 months, 2 weeks ago
Selected Answer: D
Purchasing one wildcard certi fi cate is the best soluti on to protect multi ple websites hosted by an organizati on in acloud-hosted WAF. A wildcard certi fi cate is a type of SSL/TLS certi fi cate that can secure a domain name and anynumber of its subdomains with a single certi fi cate. For example, a wildcard certi fi cate for *.mycompany.com cansecure www.mycompany.com, campus.mycompany.com, and any other subdomain under mycompany.com. Awildcard certi fi cate can save costs and simplify management compared to purchasing individual certi fi cates foreach website.
upvoted 2 times
...
cf13076
7 months, 3 weeks ago
Selected Answer: D
D. Purchase one wildcard certificate. In this scenario, where the organization hosts multiple websites under different subdomains, purchasing a wildcard certificate would be the best solution. A wildcard certificate allows secure connections for multiple subdomains under the same domain using a single certificate. By using a wildcard certificate, the cloud security engineer can secure all websites hosted by the organization (www.mycompany.org, www.mycompany.com, campus.mycompany.com, wiki.mycompany.org) without the need to purchase separate certificates for each site. This approach would help save costs and simplify certificate management for the multiple websites. Additionally, users would still be able to notify the security engineer of any on-path attacks as the wildcard certificate would ensure secure connections to all websites.
upvoted 2 times
...
saucehozz
7 months, 3 weeks ago
Selected Answer: A
A. Covers multiple domains and subdomains
upvoted 1 times
...
c0ffad1
8 months ago
Selected Answer: A
A. Purchase one SAN certificate is the best choice as it directly addresses the need for a comprehensive and cost-effective solution to protect all the specified websites under one certificate, with formal recognition and trust from clients’ systems. This simplifies management, reduces costs, and provides a robust security solution compliant with industry standards.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago