List of questions
Related questions
Question 25 - MCIA Level 1 Maintenance discussion
An organization has several APIs that accept JSON data over HTTP POST. The APIs are all publiclyavailable and are associated with several mobile applications and web applications. The organizationdoes NOT want to use any authentication or compliance policies for these APIs, but at the same time,is worried that some bad actor could send payloads that could somehow compromise theapplications or servers running the API implementations. What out-of-the-box Anypoint Platformpolicy can address exposure to this threat?
A.
Apply a Header injection and removal policy that detects the malicious data before it is used
B.
Apply an IP blacklist policy to all APIs; the blacklist will Include all bad actors
C.
Shut out bad actors by using HTTPS mutual authentication for all API invocations
D.
Apply a JSON threat protection policy to all APIs to detect potential threat vectors
Your answer:
0 comments
Sorted by
Leave a comment first