ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 101 - CAS-004 discussion

Report
Export

A company that uses AD is migrating services from LDAP to secure LDAP. During the pilot phase, services are not connecting properly to secure LDAP. Block is an except of output from the troubleshooting session:

Which of the following BEST explains why secure LDAP is not working? (Select TWO.)

A.
The clients may not trust idapt by default.
Answers
A.
The clients may not trust idapt by default.
B.
The secure LDAP service is not started, so no connections can be made.
Answers
B.
The secure LDAP service is not started, so no connections can be made.
C.
Danvills.com is under a DDoS-inator attack and cannot respond to OCSP requests.
Answers
C.
Danvills.com is under a DDoS-inator attack and cannot respond to OCSP requests.
D.
Secure LDAP should be running on UDP rather than TCP.
Answers
D.
Secure LDAP should be running on UDP rather than TCP.
E.
The company is using the wrong port. It should be using port 389 for secure LDAP.
Answers
E.
The company is using the wrong port. It should be using port 389 for secure LDAP.
F.
Secure LDAP does not support wildcard certificates.
Answers
F.
Secure LDAP does not support wildcard certificates.
G.
The clients may not trust Chicago by default.
Answers
G.
The clients may not trust Chicago by default.
Suggested answer: A, F

Explanation:

The clients may not trust idapt by default because it is a self-signed certificate authority that is not in the trusted root store of the clients. Secure LDAP does not support wildcard certificates because they do not match the fully qualified domain name of the server. Verified

Reference: https://www.professormesser.com/security-plus/sy0-401/ldap-and-secure-ldap/ , https://www.comptia.org/training/books/casp-cas-004-study-guide

asked 02/10/2024
Chan Park
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first