CompTIA Security+
911 incident response problems that help with CompTIA Security+ prep.
먼저 읽을 가이드
추천 문제
All problems (911)
SECURITY-1684An API token rotates and one script still failsOne admin API script still fails after a token rotation.SecurityBeginner7 minFreeSECURITY-1694An API token rotates and one script still failsOne admin API script still fails after a token rotation.SecurityBeginner7 minFreeSECURITY-1714An API token rotates and one script still failsOne API script still fails after token rotation.SecurityBeginner7 minFreeSECURITY-1724An API token rotates and one script still failsOne admin API script still fails after token rotation.SecurityBeginner7 minFreeSECURITY-1734An API token rotates and one script still failsOne API script still fails after token rotation.SecurityBeginner7 minFreeSECURITY-1744An API token rotates and one script still failsOne API script still fails after token rotation.SecurityBeginner7 minFreeSECURITY-1764An API token rotates and one script still failsOne API script still fails after token rotation.SecurityBeginner7 minFreeSECURITY-1623An mTLS certificate rotates and one verifier still failsOne verifier still fails after rotating an mTLS certificate.SecurityBeginner7 minFreeSECURITY-1654An mTLS certificate rotates and one verifier still failsOne verifier still fails after rotating an mTLS certificate.SecurityBeginner7 minFreeSECURITY-1664An mTLS certificate rotates and one verifier still failsOne verifier still fails after an mTLS rotation.SecurityBeginner7 minFreeSECURITY-1625An OIDC audience is fixed and one verifier still failsOne verifier still fails after an OIDC audience cleanup.SecurityBeginner7 minFreeSECURITY-1624An SIEM allowlist is updated and one alert still firesOne alert still fires after updating an SIEM allowlist.SecurityBeginner7 minFreeSECURITY-1616An SIEM parser fix is merged and one pipeline still misses eventsOne SIEM pipeline still misses events after a parser fix.SecurityBeginner7 minFreeSECURITY-005IAM role rotation leaves one batch worker using stale credentialsMost services refresh correctly, but one worker process keeps using cached credentials and starts failing scheduled jobs.ReviewedSecurityIntermediate20 minProNETWORK-009An SNI routing problem where the TLS handshake fails only on certain domainsA situation where the certificate is valid but SNI routing is wrong, so only some domains fail.ReviewedNetworkAdvanced24 minProLINUX-481A sudo rule allows the target subcommand (Permission Denied)A sudo rule allows the target subcommand (Permission Denied) focuses on linux-identity-and-access and asks the reader to isolate Permission Denied. 실무에서는 linux-identity-and-access 문제를 볼 때 서비스 로그만 보지 말고 inode, 파일시스템 여유, 포트 점유, systemd 상태, 최근 패키지 변경까지 같이 확인해야 원인을 빨리 좁힐 수 있습니다.ReviewedLinuxIntermediate17 minProSECURITY-1192Auth hardening breaks API clientsA public hardening checklist changed proxy header behavior. Browser auth appears fine, but downstream API flows now break because the app no longer sees the scheme and host headers it expects.SecurityIntermediate18 minProSECURITY-002An intermediate certificate chain problem that fails only on certain clientsThe latest browsers connect fine, but some clients fail TLS verification because the server does not send the complete certificate chain.SecurityIntermediate21 minProSECURITY-1585A browser isolation download rule updates and one archive still exits directOne archive type still exits direct after browser isolation updates.SecurityAdvanced9 minProSECURITY-1575A browser isolation MIME policy updates and one file type still downloads directOne file type still downloads direct after browser isolation MIME updates.SecurityAdvanced9 minPro