CompTIA Tech+ (FC0-U71)Applications and SoftwareMedium
A developer is creating a web application that needs to securely transmit sensitive user data, such as login credentials and payment information, between the client's browser and the server. Which protocol MUST be used to encrypt this communication and ensure data integrity?
- AHTTP
- BSMTP
- CFTP
- DHTTPS
Show answer & explanationAnswer & explanation
Correct answer: D. HTTPS
HTTPS (Hypertext Transfer Protocol Secure) is the secure version of HTTP. It uses SSL/TLS encryption to protect data in transit, ensuring confidentiality and integrity for sensitive information exchanged between a web browser and a server.
Why the other options are wrong
- A. HTTP (Hypertext Transfer Protocol) transmits data in plain text, offering no encryption or security for sensitive information.
- B. SMTP (Simple Mail Transfer Protocol) is used for sending email and is not relevant for securing web application data transmission.
- C. FTP (File Transfer Protocol) is used for transferring files and does not inherently encrypt data, making it unsuitable for sensitive information.
HTTPS (Hypertext Transfer Protocol Secure)
A secure version of HTTP that uses SSL/TLS to encrypt communication between a web browser and a server.
- Ensures data confidentiality and integrity.
- Protects against eavesdropping and tampering.
- Indicated by a padlock icon in the browser's address bar.
Memory trick: HTTPS is HTTP with added Security.