What else might you do to reduce the vulnerability?

Your online bookstore has customers connecting to a variety of Web Services to place or change orders and check order status. You ran penetration tests through the security gateway to determine if the Web Servers were protected from a recent series of cross-site scripting attacks. The penetration testing indicated to web servers were still Vulnerable. You have checked every box in the web intelligence tab, and installed the security policy. What else might you do to reduce the vulnerability?

Your online bookstore has customers connecting to a variety of Web Services to place or change orders and check order status. You ran penetration tests through the security gateway to determine if the Web Servers were protected from a recent series of cross-site scripting attacks. The penetration testing indicated to web servers were still Vulnerable. You have checked every box in the web intelligence tab, and installed the security policy. What else might you do to reduce the vulnerability?

A.
Configure the security gateway protecting the web servers as a web server.

B.
Check the products> Webserver box on the host node representing you

C.
Add port (TCP 443) as an additional port on the Webserver tab for the host node

D.
The presentation software you are using is malfunctioning and is reporting a false-po



Leave a Reply 4

Your email address will not be published. Required fields are marked *


Ypal

Ypal

I think that the real answer is something like: “Configure resource objects as Web servers, and use them in the rules allowing HTTP traffic to the Web servers.”

Deepesh

Deepesh

Answer should be A. If you check webserver in host properties then all related web/http protection gets applied to it from IPS. A similar question was in R62/R65.

seenagape

seenagape

I agree with the answer. C

Henrique Sauer Silva

Henrique Sauer Silva

C