정보보안기사
753 incident response problems that help with 정보보안기사 prep.
먼저 읽을 가이드
추천 문제
All problems (753)
SECURITY-1514A Falco rule update deploys and one syscall alert still firesA single node continues firing a retired Falco alert after a ruleset update.SecurityIntermediate10 minProSECURITY-1556A JWKS rotation succeeds and one verifier still accepts the retired keyA verifier keeps accepting a retired JWKS key after rotation.SecurityIntermediate10 minProSECURITY-1466A SAML ACS route verifies signatures and still fails destination checksSAML sign-in fails only after a reverse proxy cleanup removed explicit external port handling.SecurityIntermediate10 minProSECURITY-1487A SAML assertion validates and browser login still failsSAML login works in test tools and fails in browsers after a callback hostname migration.SecurityIntermediate10 minProSECURITY-1496A SAML metadata refresh succeeds and SP-initiated login still loopsSP-initiated SAML login loops only for one realm after an IdP metadata and signing cert refresh.SecurityIntermediate10 minProSECURITY-1506A SAML metadata refresh succeeds and SP-initiated login still loopsSP-initiated SAML login loops only for one realm after metadata refresh.SecurityIntermediate10 minProSECURITY-1516A SAML metadata refresh succeeds and SP-initiated login still loopsSP-initiated SAML login loops only for one realm after metadata refresh.SecurityIntermediate10 minProSECURITY-1476A SAML response validates and still fails only in browsersSAML login works in test tools and fails in browsers only after cookie defaults change on the callback domain.SecurityIntermediate10 minProSECURITY-1457A Secrets Store CSI mount rotates correctly and the Java app still trusts the old chainTLS still fails in one Java app after certificate rotation through CSI secrets until the pod restarts.SecurityIntermediate10 minProSECURITY-1453An OPA bundle signature verifies and the sidecar still serves stale decisionsPolicy changes deploy successfully and one sidecar keeps enforcing the old decisions until restart.SecurityIntermediate10 minProSECURITY-1472An OpenSearch authz fix is deployed and one tenant still gets deniedAccess remains broken for one tenant only on requests that land on a recently relocated shard path.SecurityIntermediate10 minProSECURITY-1462An OpenSearch role mapping update applies cleanly and one tenant still gets 403One tenant loses dashboard access right after an IdP claim mapper cleanup changed role casing.SecurityIntermediate10 minProSECURITY-1395A Prometheus or Alertmanager basic-auth secret rotates and one instance still...A Prometheus or Alertmanager basic-auth secret rotates and one instance... focuses on Identity And Access and asks the reader to isolate the key signal in grafana. Rotation bugs can hide in file rendering and comparison behavio...SecurityIntermediate11 minProSECURITY-1455A SAML response verifies and one ACS path still rejects itSAML login works on one path and fails only behind a proxy that now terminates TLS differently.SecurityIntermediate11 minProSECURITY-1430A Vault database secret rotates cleanly and one app tier still rejects loginsA Vault database secret rotates cleanly and one app tier still rejects logins focuses on credential-rotation and asks the reader to isolate the key signal in hashicorp. Generated secret regressions can come from application-side...SecurityIntermediate11 minProSECURITY-1440A Vault database secret rotates cleanly and one app tier still rejects loginsA Vault database secret rotates cleanly and one app tier still rejects logins focuses on credential-rotation and asks the reader to isolate the key signal in hashicorp. Generated secret regressions often come from application-side par...SecurityIntermediate11 minProSECURITY-1450A Vault database secret rotates cleanly and one app tier still rejects loginsA Vault plugin update lands and only one application tier loses database access while others continue to work.SecurityIntermediate11 minProSECURITY-1420A Vault database secret rotates successfully and one app tier still rejects...A Vault database secret rotates successfully and one app tier still rejects... focuses on credential-rotation and asks the reader to isolate the key signal in hashicorp. Generated secret regressions often come from client-side p...SecurityIntermediate11 minProSECURITY-1400A Vault dynamic DB credential works and one app still rejects itDynamic credentials are rolled out and one application alone starts rejecting them despite the DB and Vault role being correct.SecurityIntermediate11 minProSECURITY-1410A Vault-backed application rotates database credentials and one app tier...A Vault-backed application rotates database credentials and one app tier... focuses on credential-rotation and asks the reader to isolate the key signal in hashicorp. Credential rotation failures can come from application-side assumption...SecurityIntermediate11 minPro