최신SOA Fundamental SOA Security - S90.18무료샘플문제
문제1
Which of the following industry standards can be used to apply the Data Confidentiality
pattern?
Which of the following industry standards can be used to apply the Data Confidentiality
pattern?
정답: D
문제2
The services within a domain service inventory provide access to confidential data
retrieved from a shared database. These services need to be accessible from outside the
domain service inventory. Which of the following design options will preserve the
confidentiality of the data when the services are accessed from outside the service
inventory?
The services within a domain service inventory provide access to confidential data
retrieved from a shared database. These services need to be accessible from outside the
domain service inventory. Which of the following design options will preserve the
confidentiality of the data when the services are accessed from outside the service
inventory?
정답: A
문제3
Which of the following is the primary technology used for the application of the Data Origin
Authentication pattern?
Which of the following is the primary technology used for the application of the Data Origin
Authentication pattern?
정답: A
문제4
Which of the following are valid security considerations specific to the application of the
Service Autonomy principle?
Which of the following are valid security considerations specific to the application of the
Service Autonomy principle?
정답: D
문제5
Both the Brokered Authentication pattern and the Direct Authentication pattern advocate
the use of a central identity store.
Both the Brokered Authentication pattern and the Direct Authentication pattern advocate
the use of a central identity store.
정답: B
문제6
Which of the following approaches represents a valid means of utilizing generic security
logic?
Which of the following approaches represents a valid means of utilizing generic security
logic?
정답: C
문제7
The Direct Authentication pattern is best suited for point-to-point communication, while the
Brokered Authentication pattern is best suited for service composition where a service
consumer needs to re-authenticate itself with multiple services.
The Direct Authentication pattern is best suited for point-to-point communication, while the
Brokered Authentication pattern is best suited for service composition where a service
consumer needs to re-authenticate itself with multiple services.
정답: A
문제8
Using transport-layer security, an active intermediary that takes possession of a message
can compromise:
Using transport-layer security, an active intermediary that takes possession of a message
can compromise:
정답: D
문제9
When using a single sign-on mechanism, security contexts are____________.
When using a single sign-on mechanism, security contexts are____________.
정답: A
문제10
The receiver of a message decrypts an encrypted message digest using the public key of
the sender that corresponds to the private key. The receiver then matches it against the
digest of the original message. If the decrypted digest and the newly calculated digest
match, then what does it prove?
The receiver of a message decrypts an encrypted message digest using the public key of
the sender that corresponds to the private key. The receiver then matches it against the
digest of the original message. If the decrypted digest and the newly calculated digest
match, then what does it prove?
정답: A,B