CompTIA Security+
911 incident response problems that help with CompTIA Security+ prep.
먼저 읽을 가이드
추천 문제
All problems (911)
SECURITY-1559A CrowdSec parser update lands and one scenario still never firesA response scenario never fires for one firewall feed after parser updates.SecurityIntermediate9 minProSECURITY-1566A JWKS key set rotates and one verifier still trusts the old keyOne verifier continues trusting a retired JWKS key after rotation.SecurityIntermediate9 minProSECURITY-1484A Cloudflare Access app validates JWTs and one service still denies usersAccess works at the edge and one backend still rejects requests after an Access application rename.SecurityIntermediate10 minProSECURITY-1552A Cloudflare Access policy is tightened and one admin path still bypasses MFAOne admin path bypasses MFA after tightening Cloudflare Access rules.SecurityIntermediate10 minProSECURITY-1494A Falco rule update deploys and one syscall alert keeps firingA single node continues firing a retired Falco alert after a ruleset update across the cluster.SecurityIntermediate10 minProSECURITY-1504A Falco rule update deploys and one syscall alert keeps firingA single node continues firing a retired Falco alert after a ruleset update.SecurityIntermediate10 minProSECURITY-1514A Falco rule update deploys and one syscall alert still firesA single node continues firing a retired Falco alert after a ruleset update.SecurityIntermediate10 minProSECURITY-1556A JWKS rotation succeeds and one verifier still accepts the retired keyA verifier keeps accepting a retired JWKS key after rotation.SecurityIntermediate10 minProSECURITY-1466A SAML ACS route verifies signatures and still fails destination checksSAML sign-in fails only after a reverse proxy cleanup removed explicit external port handling.SecurityIntermediate10 minProSECURITY-1487A SAML assertion validates and browser login still failsSAML login works in test tools and fails in browsers after a callback hostname migration.SecurityIntermediate10 minProSECURITY-1496A SAML metadata refresh succeeds and SP-initiated login still loopsSP-initiated SAML login loops only for one realm after an IdP metadata and signing cert refresh.SecurityIntermediate10 minProSECURITY-1506A SAML metadata refresh succeeds and SP-initiated login still loopsSP-initiated SAML login loops only for one realm after metadata refresh.SecurityIntermediate10 minProSECURITY-1516A SAML metadata refresh succeeds and SP-initiated login still loopsSP-initiated SAML login loops only for one realm after metadata refresh.SecurityIntermediate10 minProSECURITY-1476A SAML response validates and still fails only in browsersSAML login works in test tools and fails in browsers only after cookie defaults change on the callback domain.SecurityIntermediate10 minProSECURITY-1457A Secrets Store CSI mount rotates correctly and the Java app still trusts the old chainTLS still fails in one Java app after certificate rotation through CSI secrets until the pod restarts.SecurityIntermediate10 minProSECURITY-1453An OPA bundle signature verifies and the sidecar still serves stale decisionsPolicy changes deploy successfully and one sidecar keeps enforcing the old decisions until restart.SecurityIntermediate10 minProSECURITY-1472An OpenSearch authz fix is deployed and one tenant still gets deniedAccess remains broken for one tenant only on requests that land on a recently relocated shard path.SecurityIntermediate10 minProSECURITY-1462An OpenSearch role mapping update applies cleanly and one tenant still gets 403One tenant loses dashboard access right after an IdP claim mapper cleanup changed role casing.SecurityIntermediate10 minProSECURITY-1395A Prometheus or Alertmanager basic-auth secret rotates and one instance still...A Prometheus or Alertmanager basic-auth secret rotates and one instance... focuses on Identity And Access and asks the reader to isolate the key signal in grafana. Rotation bugs can hide in file rendering and comparison behavio...SecurityIntermediate11 minProSECURITY-1455A SAML response verifies and one ACS path still rejects itSAML login works on one path and fails only behind a proxy that now terminates TLS differently.SecurityIntermediate11 minPro