Question 37 of 44 from exam CAS-004: CompTIA CASP+

Question 37 of 44 from exam CAS-004: CompTIA CASP+

Question

A new web server must comply with new secure-by-design principles and PCI DSS.

This includes mitigating the risk of an on-path attack.

A security analyst is reviewing the following web server configuration:

TLS_AES_256_GCM_SHA384
TLS_CHACHA20_POLY1305_SHA256
TLS_AES_128 _GCM_SHA256
TLS_AES_128 CCM 8 _SHA256

TLS _RSA_WITH_AES 128 CBC_SHA256
TLS_DHE_DSS_WITH_RC4_128 SHA
RSA_WITH AES 128 CCM

Which of the following ciphers should the security analyst remove to support the business requirements?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

C.