ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 141 - CS0-003 discussion

Report
Export

An analyst wants to ensure that users only leverage web-based software that has been pre-approved by the organization. Which of the following should be deployed?

A.
Blocklisting
Answers
A.
Blocklisting
B.
Allowlisting
Answers
B.
Allowlisting
C.
Graylisting
Answers
C.
Graylisting
D.
Webhooks
Answers
D.
Webhooks
Suggested answer: B

Explanation:

The correct answer is B. Allowlisting.

Allowlisting is a technique that allows only pre-approved web-based software to run on a system or network, while blocking all other software. Allowlisting can help prevent unauthorized or malicious software from compromising the security of an organization. Allowlisting can be implemented using various methods, such as application control, browser extensions, firewall rules, or proxy servers12.

The other options are not the best techniques to ensure that users only leverage web-based software that has been pre-approved by the organization. Blocklisting (A) is a technique that blocks specific web-based software from running on a system or network, while allowing all other software.

Blocklisting can be ineffective or inefficient, as it requires constant updates and may not catch all malicious software. Graylisting © is a technique that temporarily rejects or delays incoming messages from unknown or suspicious sources, until they are verified as legitimate. Graylisting is mainly used for email filtering, not for web-based software control. Webhooks (D) are a technique that allows web-based software to send or receive data from other web-based software in real time, based on certain events or triggers. Webhooks are not related to web-based software control, but rather to web-based software integration.

asked 02/10/2024
Shadi Akou
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first