nerdexam
CompTIA

CV0-004 · Question #41

A user's assigned cloud credentials are locked, and the user is unable to access the project's application. The cloud administrator reviews the logs and notices several attempts to log in with the…

The correct answer is B. Track the source of the log-in attempts and block the IP address of the source in the WAR. The administrator should track the source of the log-in attempts and block the IP address in the Web Application Firewall (WAF). This will prevent further unauthorized attempts from that source. It is also advisable to reset the user's account credentials as a precautionary…

Troubleshooting

Question

A user's assigned cloud credentials are locked, and the user is unable to access the project's application. The cloud administrator reviews the logs and notices several attempts to log in with the user's account were made to a different application after working hours. Which of the following is the best approach for the administrator to troubleshoot this issue?

Options

  • ACreate new credentials for the user and restrict access to the authorized application.
  • BTrack the source of the log-in attempts and block the IP address of the source in the WAR
  • CReset the user's account and implement a stronger lock-out policy.
  • DInstall an IDS on the network to monitor suspicious activity

How the community answered

(49 responses)
  • A
    14% (7)
  • B
    73% (36)
  • C
    8% (4)
  • D
    4% (2)

Explanation

The administrator should track the source of the log-in attempts and block the IP address in the Web Application Firewall (WAF). This will prevent further unauthorized attempts from that source. It is also advisable to reset the user's account credentials as a precautionary measure.

Topics

#Incident Response#Cloud Security#Access Management#WAF

Community Discussion

No community discussion yet for this question.

Full CV0-004 Practice