CompTIA Cloud+ CV0-003 Practice Question
An administrator was notified that a recently deployed internal web application is transmitting data in plain text. This has raised concerns about sensitive data being easily intercepted within the network. While reviewing the application's configuration, the administrator finds that the application should support encrypted connections. Which of the following actions should the administrator take FIRST to remediate this security risk?
Force all web application traffic to use HTTPS by default.
Enable TLS on the server to ensure data is encrypted during transit.
Patch the web application as it may contain vulnerabilities that disable encryption.
Update the firewall rules to block all traffic on port 80 to the application server.