CompTIA Server+ (SK0-005)Security and Disaster RecoveryMedium
A server administrator is configuring a new web server that will host sensitive customer data. The company's security policy mandates that all data in transit between the client and the server must be encrypted to prevent eavesdropping and tampering. Which protocol should the administrator implement to meet this requirement for web traffic?
- ASMTP
- BFTP
- CHTTP
- DHTTPS
Show answer & explanationAnswer & explanation
Correct answer: D. HTTPS
HTTPS (Hypertext Transfer Protocol Secure) encrypts HTTP traffic using SSL/TLS, ensuring secure communication between a client and a web server. This prevents eavesdropping and tampering with sensitive data.
Why the other options are wrong
- A. SMTP (Simple Mail Transfer Protocol) is used for email and is not relevant for securing web traffic.
- B. FTP (File Transfer Protocol) is typically unencrypted and not suitable for sensitive data in transit.
- C. HTTP (Hypertext Transfer Protocol) transmits data in plaintext and offers no encryption.
HTTPS
A secure version of HTTP that uses SSL/TLS to encrypt communication between a web browser and a server.
- Encrypts data in transit.
- Uses port 443 by default.
- Provides authentication and data integrity.
Memory trick: For web traffic, 'S' stands for Secure.