SY0-501 · Question #308
Company XYZ has decided to make use of a cloud-based service that requires mutual, certificate- based authentication with its users. The company uses SSL-inspecting IDS at its network boundary and is
Sign in or unlock SY0-501 to reveal the answer and full explanation for question #308. The question stem and answer options stay visible for context.
Question
Company XYZ has decided to make use of a cloud-based service that requires mutual, certificate- based authentication with its users. The company uses SSL-inspecting IDS at its network boundary and is concerned about the confidentiality of the mutual authentication. Which of the following model prevents the IDS from capturing credentials used to authenticate users to the new service or keys to decrypt that communication?
Options
- AUse of OATH between the user and the service and attestation from the company domain
- BUse of active directory federation between the company and the cloud-based service
- CUse of smartcards that store x.509 keys, signed by a global CA
- DUse of a third-party, SAML-based authentication service for attestation
Unlock SY0-501 to see the answer
You've previewed enough free SY0-501 questions. Unlock SY0-501 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.