nerdexam
CompTIA

CAS-005 · Question #456

A security administrator wants to detect a potential forged sender claim in the envelope of an email. Which of the following should the security administrator implement? (Choose two).

The correct answer is B. DMARC C. SPF. SPF (Sender Policy Framework): Validates the envelope sender (MAIL FROM) by checking that the sending IP is authorized in the domain’s SPF record, detecting forged return‑path addresses. DMARC (Domain-based Message Authentication, Reporting & Conformance): Builds on SPF (and…

Submitted by naveen.iyer· Mar 6, 2026Security Engineering

Question

A security administrator wants to detect a potential forged sender claim in the envelope of an email. Which of the following should the security administrator implement? (Choose two).

Options

  • AMX record
  • BDMARC
  • CSPF
  • DDNSSEC
  • ES/MIME
  • FTLS

How the community answered

(17 responses)
  • A
    6% (1)
  • B
    71% (12)
  • E
    6% (1)
  • F
    18% (3)

Explanation

SPF (Sender Policy Framework): Validates the envelope sender (MAIL FROM) by checking that the sending IP is authorized in the domain’s SPF record, detecting forged return‑path addresses. DMARC (Domain-based Message Authentication, Reporting & Conformance): Builds on SPF (and DKIM) to enforce alignment between the authenticated envelope sender and the “From:” header, providing policy enforcement and reporting on any failures.

Community Discussion

No community discussion yet for this question.

Full CAS-005 Practice