exam questions

Exam 98-364 All Questions

View all questions & answers for the 98-364 exam

Exam 98-364 topic 1 question 79 discussion

Actual exam question from Microsoft's 98-364
Question #: 79
Topic #: 1
[All 98-364 Questions]

HOTSPOT -
The following graphic shows the components of a SQL Server application. You access the SQL Server application through Internet Explorer.

Instructions: Use the drop-down menus to select the answer choice that completes each statement. Each correct selection is worth one point.
Hot Area:

Show Suggested Answer Hide Answer
Suggested Answer:

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
YuriiS
Highly Voted 5 years, 1 month ago
first answer is wrong! Must be www.contoso.com Not a client computer!!!
upvoted 14 times
...
qweewq123
Highly Voted 4 years, 3 months ago
The first line is fine, it is a client becouse script(ex. on website) should verify data input.
upvoted 5 times
Anon_7567
3 years, 10 months ago
The client would be completely under the control of an attacker, since it would be running on their computer. Security measures on the client side should always be considered unreliable
upvoted 1 times
...
...
Jonny98101
Most Recent 3 years, 2 months ago
The client should be the FIRST LINE of defense (not the only). "Implement multiple layers of validation. Precautions you take against casually malicious users may be ineffective against determined attackers. A better practice is to validate input in the user interface and at all subsequent points where it crosses a trust boundary. For example, data validation in a client-side application can prevent simple script injection. However, if the next tier assumes that its input has already been validated, any malicious user who can bypass a client can have unrestricted access to a system." https://docs.microsoft.com/en-us/sql/relational-databases/security/sql-injection?view=sql-server-ver15 https://docs.microsoft.com/en-us/sql/relational-databases/security/sql-injection?view=sql-server-ver15
upvoted 1 times
...
NWS106
4 years, 8 months ago
Also, Internet Explorer? Who uses IE? What percentage of PC users have used IE in the past decade? lol You'd think MS would at least update the question to address and promote Edge, since that is their new and improved web-browsing product.
upvoted 3 times
...
asarak
4 years, 8 months ago
I believe that the first line is IIS, but it might be aw an option of the client security to promote the client defense (which is completely wrong).
upvoted 1 times
...
salah
5 years, 1 month ago
why the first line of defense against sql injection ? client
upvoted 2 times
Anon_7567
3 years, 10 months ago
It's not, the right answer is www.contoso.com
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago