Certification753 problems· 15 reviewed

정보보안기사

753 incident response problems that help with 정보보안기사 prep.

All problems (753)

SECURITY-1471A Vault Agent rotates the leaf cert and the app still presents the old chainA restarted JVM still serves the old chain when Vault Agent rotates secrets just after process bootstrap.SecurityAdvanced12 minProSECURITY-1452A Vault Transit key rotates and one app tier still rejects JWE tokensEncrypted tokens fail only in one app tier after Transit key rotation while decryption still works elsewhere.SecurityAdvanced12 minProSECURITY-1482An Elastic ingest pipeline update lands and one shard still rejects documentsDocument rejection persists only on one shard after an ingest pipeline and template refactor.SecurityAdvanced12 minProSECURITY-1373An Elastic logging sidecar reconnects (elastic-sidecar-mounted-new-secret-but-kept-old-key-in-env-file)An Elastic logging sidecar reconnects (elastic-sidecar-mounted-new-secret-but... focuses on Identity And Access and asks the reader to isolate the key signal in Kubernetes. Projected secret updates do not guarantee the process r...SecurityIntermediate12 minProSECURITY-1477An HA firewall pair shares sessions and URL filtering still divergesThe same URL is blocked on one HA node and allowed on the other during an update window.SecurityAdvanced12 minProSECURITY-1467An HA URL filtering pair divergesA security policy appears inconsistent across the HA pair during a category database refresh window.SecurityAdvanced12 minProSECURITY-1491An IAM access analyzer finding is resolved and a cross-account role still grants accessA cross-account role remains reachable from a retired account even after the primary stack set shows the fix applied.SecurityAdvanced12 minProSECURITY-1501An IAM access finding is resolved and a cross-account role still grants accessA retired external account can still assume a role from one region after the main fix is applied.SecurityAdvanced12 minProSECURITY-1511An IAM access finding is resolved and a cross-account role still grants accessA retired external account can still assume a role from one region after the primary fix is applied.SecurityAdvanced12 minProSECURITY-1486An OPA bundle rollout succeeds and one deny rule still firesA deny rule that should be gone continues firing after a successful policy bundle rollout.SecurityAdvanced12 minProSECURITY-1475An OPA bundle verifies and stale deny rules persistA policy refactor appears deployed while one deny rule from the old package path still fires in production.SecurityAdvanced12 minProSECURITY-1465An OPA bundle verifies and still serves stale policyOne sidecar still accepts bundles signed with a revoked key even after JWKS rotation.SecurityAdvanced12 minProSECURITY-1362An OpenSearch dashboards login loops after proxy hardeningA reverse proxy is hardened and later users start bouncing between the IdP and dashboards without ever reaching an authenticated session.SecurityIntermediate12 minProSECURITY-1483An OpenSearch snapshot repository stays registered and restores failSnapshot restores fail only after KMS alias rotation while repository verification still passes.SecurityAdvanced12 minProSECURITY-1456An SSH CA principal map becomes too broadSSH certificate access becomes broader than intended after host and role names were standardized.SecurityAdvanced12 minProSECURITY-1365A Cloudflare Access app is protected on 443 and an alternate admin listener remains publicA team puts an app behind Cloudflare Access and later discovers a side-channel admin port on the same origin is still reachable directly.SecurityAdvanced13 minProSECURITY-1356A Fail2ban or CrowdSec pipeline bans the proxy IPA reverse proxy is inserted and automated bans later begin targeting the proxy instead of the actual abusive clients.SecurityIntermediate13 minProSECURITY-1323A Grafana OAuth login works and role sync stays wrongAn IdP cleanup changes claim names and Grafana users later authenticate successfully but lose admin or editor access unexpectedly.SecurityIntermediate13 minProSECURITY-1414A hardened proxy blocks normal admin verbs and one legacy WebDAV endpoint...A hardened proxy blocks normal admin verbs and one legacy WebDAV endpoint... focuses on Identity And Access and asks the reader to isolate the key signal in NGINX. Internal rewrites can escape security controls when named locations do n...SecurityAdvanced13 minProSECURITY-1424A hardened proxy blocks normal admin verbs and one legacy WebDAV path still...A hardened proxy blocks normal admin verbs and one legacy WebDAV path still... focuses on Identity And Access and asks the reader to isolate the key signal in NGINX. Internal rewrites can bypass controls when named locations do not inher...SecurityAdvanced13 minPro