An administrator needs to protect against downgrade attacks due to various vulnerabilities in SSL/TLS.
Which of the following actions should be performed? (Select TWO)

A.
Set minimum protocol supported
B.
Request a new certificate from the CA
C.
Configure cipher order
D.
Disable flash cookie support
E.
Re-key the SSL certificate
F.
Add the old certificate to the CRL
It should be A and C.
1
0
Can you explain this for me? Thank you
1
0
You can find an explanation here: http://blogs.getcertifiedgetahead.com/downgrade-attack/
2
0
Thanks dude!
It is an important concept which I never even thought about. Answer is A, C 🙂
1
0