CompTIA PenTest+ PT0-002 Practice Question

During a penetration test, you have determined that the SSL certificates used on a company's web server are self-signed and have been expired for 6 months. What would be the most appropriate recommendation to include in your report to improve their certificate management practices?

  • Replace self-signed certificates with certificates issued by a trusted Certificate Authority (CA), and implement a process to check and renew certificates before they expire.

  • Implement a web application firewall (WAF) to secure the server and mitigate the need for a trusted certificate.

  • Renew the self-signed certificates to extend their validity period so that users no longer receive security warnings.

  • Request an exception from browsers' certificate warning lists to avoid security warnings about the self-signed certificates.

CompTIA PenTest+ PT0-002
Reporting and Communication
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot