ExamGecko
Question list
Search
Search

Question 29 - Vault Associate 002 discussion

Report
Export

Vault supports which type of configuration for source limited token?

A.
Cloud-bound tokens
Answers
A.
Cloud-bound tokens
B.
Domain-bound tokens
Answers
B.
Domain-bound tokens
C.
CIDR-bound tokens
Answers
C.
CIDR-bound tokens
D.
Certificate-bound tokens
Answers
D.
Certificate-bound tokens
Suggested answer: C

Explanation:

Vault supports CIDR-bound tokens, which are tokens that can only be used from a specific set of IP addresses or network ranges. This is a way to limit the scope and exposure of a token in case it is compromised or leaked. CIDR-bound tokens can be created by specifying the bound_cidr_list parameter when creating or updating a token role, or by using the -bound-cidr option when creating a token using the vault token create command. CIDR-bound tokens can also be created by some auth methods, such as AWS or Kubernetes, that can automatically bind the tokens to the source IP or network of the client.Reference:Token - Auth Methods | Vault | HashiCorp Developer,vault token create - Command | Vault | HashiCorp Developer

asked 18/09/2024
harinder giri
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first