Labour Day Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

SOA Certification S90.19 Exam Dumps

Page: 3 / 3
Total 83 questions

Advanced SOA Security Questions and Answers

Question 9

Which of the following types of attack always affect the availability of a service?

Options:

A.

Exception generation attack

B.

SQL injection attack

C.

XPath injection attack

D.

None of the above

Question 10

Service A accesses a legacy system. There is a requirement to secure Service A so that it can only be accessed by authorized service consumers. The current service architecture doesn't allow the delegation of service consumer credentials to the legacy system. Which pattern needs to be applied in order to fulfill this security requirement?

Options:

A.

Brokered Authentication

B.

Direct Authentication

C.

Data Origin Authentication

D.

None of the above.

Question 11

A common alternative to_____________ is the use of a ____________.

Options:

A.

Public key cryptography, private key

B.

Digital signatures, symmetric key

C.

Public key cryptography, public key

D.

Private keys, digital signatures

Question 12

As an SOA security specialist you are being asked to educate an IT team about how to best design security policies for a given set of services. Which of the following recommendations are valid?

Options:

A.

common security requirements can be centralized into shared security policies

B.

security policies are defined by using WSDL and XML Schema industry standards together

C.

security policies can be decoupled from service logic

D.

security policies can be part of service contracts and are therefore subject to the Service Loose Coupling principle

Page: 3 / 3
Total 83 questions