Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Google Cloud - Apigee Certified API Engineer Exam - Topic 6 Question 20 Discussion

Your API generates tokens to authenticate users. You have the following requirements1. Limited token lifetime.2. Managed key rotation.3. Self-verifiable content.4 Compact data representation5. Refresh without new challenge.You plan to use SAML2 Which two of the above-listed requirements are satisfied by using SAML2? Choose 2 answers
A) Limited token lifetime.
B) Managed key rotation
C) Self-verifiable content
D) Compact data representation
E) Refresh without a new challenge

Google Cloud - Apigee Certified API Engineer Exam - Topic 6 Question 20 Discussion

Actual exam question for Google's Google Cloud - Apigee Certified API Engineer exam
Question #: 20
Topic #: 6
[All Google Cloud - Apigee Certified API Engineer Questions]

Your API generates tokens to authenticate users. You have the following requirements

1. Limited token lifetime.

2. Managed key rotation.

3. Self-verifiable content.

4 Compact data representation

5. Refresh without new challenge.

You plan to use SAML2 Which two of the above-listed requirements are satisfied by using SAML2? Choose 2 answers

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Markus
4 days ago
Wait, SAML2 does self-verification? That's surprising!
upvoted 0 times
...
Ben
9 days ago
I think B) Managed key rotation might not be fully covered though.
upvoted 0 times
...
Genevive
14 days ago
Totally agree with that! SAML2 handles those well.
upvoted 0 times
...
Curt
19 days ago
A) Limited token lifetime and C) Self-verifiable content are satisfied by SAML2.
upvoted 0 times
...
Tina
24 days ago
I thought SAML2 needed a new challenge for refresh, but I guess not!
upvoted 0 times
...
Brittney
29 days ago
Compact data representation isn't really a strong suit for SAML2.
upvoted 0 times
...
Ettie
1 month ago
Wait, can SAML2 really handle key rotation effectively?
upvoted 0 times
...
Rodolfo
1 month ago
Totally agree with that!
upvoted 0 times
...
Arminda
1 month ago
A) Limited token lifetime and C) Self-verifiable content are covered by SAML2.
upvoted 0 times
...
Peggie
2 months ago
I practiced a similar question, and I recall that SAML2 tokens can be quite large, so I'm not sure about compact data representation being satisfied.
upvoted 0 times
...
Terrilyn
2 months ago
I think SAML2 provides self-verifiable content because it uses XML signatures, so option C could be correct too.
upvoted 0 times
...
Jarod
2 months ago
I'm not entirely sure about key rotation with SAML2. I feel like it might not handle that as well as other protocols.
upvoted 0 times
...
Odette
4 months ago
I remember that SAML2 does support limited token lifetimes, so I think option A is definitely one of the answers.
upvoted 0 times
...

Save Cancel