nerdexam
F5

304 · Question #41

Which features of BIG-IP APM should be used to mitigate a specific authentication attack targeting user credentials? (Select all that apply)

The correct answer is A. Endpoint Security checks B. Session cookies. Endpoint Security checks (A) and Session cookies (B) directly address credential-based authentication attacks. Endpoint Security checks inspect the client device for threats like keyloggers, malware, or unauthorized software that could be used to harvest credentials before a…

Section 1: Implement APM for Access

Question

Which features of BIG-IP APM should be used to mitigate a specific authentication attack targeting user credentials? (Select all that apply)

Options

  • AEndpoint Security checks
  • BSession cookies
  • CApplication Layer DoS protection
  • DSecure Web Gateway (SWG)

How the community answered

(40 responses)
  • A
    80% (32)
  • C
    13% (5)
  • D
    8% (3)

Explanation

Endpoint Security checks (A) and Session cookies (B) directly address credential-based authentication attacks. Endpoint Security checks inspect the client device for threats like keyloggers, malware, or unauthorized software that could be used to harvest credentials before a session is established. Session cookies replace repeated credential transmission with a secure, time-limited token, preventing credential replay and interception attacks mid-session.

Application Layer DoS protection (C) is incorrect because it targets volumetric/flood attacks designed to overwhelm availability - not attacks aimed at stealing or abusing user credentials. Secure Web Gateway (D) is incorrect because SWG controls outbound user traffic and URL filtering, not inbound authentication flows to protected applications.

Memory tip: Think "Protect Before and During" - Endpoint Security protects before access is granted (is the device safe?), and Session cookies protect during the session (replace credentials with a secure token). DoS and SWG guard different threat vectors entirely.

Topics

#Credential Protection#Endpoint Security#Session Management#APM Security

Community Discussion

No community discussion yet for this question.

Full 304 Practice