Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GIAC GCFR Exam - Topic 8 Question 55 Discussion

At what point of the OAuth delegation process does the Resource Owner approve the scope of access to be allowed?
A) After user credentials are accepted by the Authorization Server
B) Once the OAuth token is accepted by the Application
C) When the Resource Server receives the OAuth token
D) Before user credentials are sent to the Authentication Server

GIAC GCFR Exam - Topic 8 Question 55 Discussion

Actual exam question for GIAC's GCFR exam
Question #: 55
Topic #: 8
[All GCFR Questions]

At what point of the OAuth delegation process does the Resource Owner approve the scope of access to be allowed?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Krystal
3 days ago
A seems right, but I see why D is popular too.
upvoted 0 times
...
Idella
8 days ago
I’m leaning towards A. The authorization server needs to confirm access.
upvoted 0 times
...
Louvenia
13 days ago
I agree with D. It makes sense to approve before sending credentials.
upvoted 0 times
...
Glory
19 days ago
I think it's D. The user should know what they're sharing first.
upvoted 0 times
...
Nakisha
24 days ago
Totally agree with A! User consent is key before anything else.
upvoted 0 times
...
Nichelle
29 days ago
Wait, are we sure it's A? I feel like I need to double-check that.
upvoted 0 times
...
Claudia
1 month ago
No way, it's not B or C. Those happen later in the process.
upvoted 0 times
...
Denny
1 month ago
I thought it was D at first, but A makes more sense.
upvoted 0 times
...
Pedro
1 month ago
It's definitely A! The user approves access before credentials are sent.
upvoted 0 times
...
Cristy
2 months ago
Totally agree with A! User consent is key before anything else.
upvoted 0 times
...
Quentin
2 months ago
Wait, are we sure it's A? I feel like I need to double-check that.
upvoted 0 times
...
Tammi
2 months ago
No way, it's not B or C. Those happen later in the process.
upvoted 0 times
...
Portia
4 months ago
I thought it was D at first, but A makes more sense.
upvoted 0 times
...
Pete
4 months ago
It's definitely A! The user approves access before credentials are sent.
upvoted 0 times
...
Dana
4 months ago
I feel like it has to be before the credentials are sent, so D seems right, but I wish I had reviewed this section more.
upvoted 0 times
...
Queenie
4 months ago
I'm a bit confused; I thought the approval happened after the user logged in, which could point to A again.
upvoted 0 times
...
Rory
5 months ago
I remember a practice question that mentioned the approval happens before any tokens are exchanged, which makes me lean towards D.
upvoted 0 times
...
Vincenza
5 months ago
I think the Resource Owner approves the scope right after they enter their credentials, so maybe it's A? But I'm not entirely sure.
upvoted 0 times
...

Save Cancel