QuestionQ42

Security Operations

A user attempted to access a web page at http://10.1.11. Previously, the web page did not require authentication, but the browser now prompts for credentials. Which of the following actions would best prevent this issue from recurring and reduce the risk of credential exposure?

Explanation

HTTPS configured with a trusted X.509 certificate provides server authentication, integrity protection, and encryption for the web session. This prevents credentials from being sent in cleartext over HTTP and helps prevent an impersonating server from obtaining them.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!