nerdexam
(ISC)2

CISSP · Question #667

An organization seeks to use a cloud Identity and Access Management (IAM) provider whose protocols and data formats are incompatible with existing systems. Which of the following techniques addresses

The correct answer is D. Install an on-premise Authentication Gateway Service (AGS) In front of the service provider.. When an organization uses a cloud IAM provider with incompatible protocols and data formats, an Authentication Gateway Service (AGS) can act as an intermediary layer. The AGS can bridge the gap between the cloud IAM system and the organization’s existing systems. It allows for pr

Submitted by skyler.x· Mar 5, 2026Identity and Access Management (IAM)

Question

An organization seeks to use a cloud Identity and Access Management (IAM) provider whose protocols and data formats are incompatible with existing systems. Which of the following techniques addresses the compatibility issue?

Options

  • ARequire the cloud IAM provider to use declarative security instead of programmatic authentication
  • BIntegrate a Web-Application Firewall (WAF) In reverie-proxy mode in front of the service provider.
  • CApply Transport layer Security (TLS) to the cloud-based authentication checks.
  • DInstall an on-premise Authentication Gateway Service (AGS) In front of the service provider.

How the community answered

(37 responses)
  • A
    5% (2)
  • B
    27% (10)
  • C
    11% (4)
  • D
    57% (21)

Explanation

When an organization uses a cloud IAM provider with incompatible protocols and data formats, an Authentication Gateway Service (AGS) can act as an intermediary layer. The AGS can bridge the gap between the cloud IAM system and the organization’s existing systems. It allows for protocol translation, ensuring that both systems can communicate securely and effectively, despite their differences in protocols and formats.

Topics

#cloud IAM#identity federation#authentication gateway#hybrid identity

Community Discussion

No community discussion yet for this question.

Full CISSP Practice