CV0-003 CompTIA Cloud+ Certification Exam

Loading demo links...

Showing 1–3 of 15 questions

Question 1

CORRECT TEXT

The QA team is testing a newly implemented clinical trial management (CTM) SaaS application that uses a business intelligence application for reporting. The UAT users were instructed to use HTTP and HTTPS.

Refer to the application dataflow:

1A – The end user accesses the application through a web browser to enter and view clinical data.

2A – The CTM application server reads/writes data to/from the database server.

1B – The end user accesses the application through a web browser to run reports on clinical data.

2B – The CTM application server makes a SOAP call on a non-privileged port to the BI application server.

3B – The BI application server gets the data from the database server and presents it to the CTM application server.

When UAT users try to access the application using https://ctm.app.com or http://ctm.app.com, they get a message stating: “Browser cannot display the webpage.”

The QA team has raised a ticket to troubleshoot the issue.

INSTRUCTIONS

You are a cloud engineer who is tasked with reviewing the firewall rules as well as virtual network settings.

You should ensure the firewall rules are allowing only the traffic based on the dataflow.

You have already verified the external DNS resolution and NAT are working.

Verify and appropriately configure the VLAN assignments and ACLs. Drag and drop the appropriate VLANs to each tier from the VLAN Tags table. Click on each Firewall to change

ACLs as needed.

If at any time you would like to bring back the initial state of the simulation, please click the

Reset All button.

Answer is in the explanation below.

Question 2

A system administrator has provisioned a new web server. Which of the following, in combination, form the best practice to secure the server's OS? (Choose three.)

Select all that apply, then click Submit answer.

  • Install TLS certificates on the server.

  • Forward port 80 traffic to port 443.

  • Disable TLS 1.0/1.1 and SSL.

  • Disable password authentication.

  • Enable SSH key access only.

  • Provision the server in a separate VPC.

  • Disable the superuser/administrator account.

  • Restrict access on port 22 to the IP address of the administrator's workstation.

Question 3

A systems administrator is performing upgrades to all the hypervisors in the environment. Which of the following components of the hypervisors should be upgraded? (Choose two.)

Select all that apply, then click Submit answer.

  • The fabric interconnects

  • The virtual appliances

  • The firmware

  • The virtual machines

  • The baselines

  • The operating system