ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 104 - CV0-004 discussion

Report
Export

A company hosts various containerized applications for business uses. A client reports that one of its routine business applications fails to load the web-based login prompt hosted in the company cloud.

Click on each device and resource. Review the configurations, logs, and characteristics of each node in the architecture to diagnose the issue. Then, make the necessary changes to the WAF configuration to remediate the issue.

A.
See the Explanation below for solution
Answers
A.
See the Explanation below for solution
Suggested answer: A

Explanation:

From the image, it's noticeable that some finance application rules are set to 'Block' traffic. If the client's issue is with a finance-related application not loading the login prompt, these rules could be the cause.

The rule with ID 1005, labeled 'Finance application 1', is configured to allow access to 'webapp1' for finance-related paths. However, rule 1006, labeled 'Finance application 2', is set to block access to 'webapp1' for login-related paths.

To remediate the issue based on the WAF configuration you have provided, you would want to:

Ensure that the correct paths to the finance application are allowed through the WAF.

Modify any rules that are incorrectly blocking access to the application.

If the client's problem is specifically with the login prompt, then rule 1006 seems the most likely culprit. Changing the action from 'Block' to 'Allow' for rule 1006 could potentially resolve the client's issue. The rule should be carefully reviewed and updated to ensure legitimate traffic is not being blocked while still protecting against unauthorized access.

asked 02/10/2024
Brandon O'Driscoll
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first