List of questions
Related questions
Question 263 - CAS-004 discussion
To save time, a company that is developing a new VPN solution has decided to use the OpenSSL library within Its proprietary software. Which of the following should the company consider to maximize risk reduction from vulnerabilities introduced by OpenSSL?
A.
Include stable, long-term releases of third-party libraries instead of using newer versions.
B.
Ensure the third-party library implements the TLS and disable weak ciphers.
C.
Compile third-party libraries into the main code statically instead of using dynamic loading.
D.
Implement an ongoing, third-party software and library review and regression testing.
Your answer:
0 comments
Sorted by
Leave a comment first