CAS-003 문제 36
A request has been approved for a vendor to access a new internal server using only HTTPS and SSH to manage the back-end system for the portal. Internal users just need HTTP and HTTPS access to all internal web servers. All other external access to the new server and its subnet is not allowed. The security manager must ensure proper access is configured.

Below is a snippet from the firewall related to that server (access is provided in a top-down model):

Which of the following lines should be configured to allow the proper access? (Choose two.)

Below is a snippet from the firewall related to that server (access is provided in a top-down model):

Which of the following lines should be configured to allow the proper access? (Choose two.)
CAS-003 문제 37



CAS-003 문제 38
Given the following code snippet:

Of which of the following is this snippet an example?

Of which of the following is this snippet an example?
CAS-003 문제 39
A security architect is implementing security measures in response to an external audit that found vulnerabilities in the corporate collaboration tool suite. The report identified the lack of any mechanism to provide confidentiality for electronic correspondence between users and between users and group mailboxes.
Which of the following controls would BEST mitigate the identified vulnerability?
Which of the following controls would BEST mitigate the identified vulnerability?
CAS-003 문제 40
워크스테이션, 서버 및 랩톱과 같은 자산의 전체 디스크 암호화 체계에 따라 모든 모바일 장치가 암호화되는 회사입니다. 다음 중 회사의 모바일 장치 관리자를 선택할 때 가장 제한적인 요소는 무엇입니까?