List of questions
Question 41 - Vault Associate 002 discussion
A web application uses Vault's transit secrets engine to encrypt data in-transit. If an attacker intercepts the data in transit which of the following statements are true? Choose two correct answers.
A.
You can rotate the encryption key so that the attacker won't be able to decrypt the data
B.
The keys can be rotated and min_decryption_version moved forward to ensure this data cannot be decrypted
C.
The Vault administrator would need to seal the Vault server immediately
D.
Even if the attacker was able to access the raw data, they would only have encrypted bits (TLS in transit)
Your answer:
0 comments
Sorted by
Leave a comment first