Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Salesforce Exam B2C Commerce Developer Topic 10 Question 53 Discussion

Actual exam question for Salesforce's B2C Commerce Developer exam
Question #: 53
Topic #: 10
[All B2C Commerce Developer Questions]

In Log Center, a developer notes a number of Cross Site Request Forgery (CSRF) log entries. The developer knows that this happens when a CSRF token is either not found or is invalid, and is working to remedy the situation as soon as possible.

Which two courses of action might solve the problem?

Choose 2 answers

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

Roxane
30 days ago
Hold up, I've got a brilliant idea - let's just turn off CSRF protection entirely. What could possibly go wrong?
upvoted 0 times
...
Nu
1 months ago
Ah, the old 'add a middleware step' trick. Classic developer move right there.
upvoted 0 times
...
Catarina
1 months ago
Deleting the CSRF whitelists? That's like taking a sledgehammer to a fly. Talk about overkill!
upvoted 0 times
Samira
10 days ago
D) Add csrfProtection.generateToken as a middleware step in the controller.
upvoted 0 times
...
Maddie
1 months ago
A) Add the token in the ISML template.
upvoted 0 times
...
...
Nadine
2 months ago
Extending the CSRF token validity? Nah, that's just kicking the can down the road. Better to address the root cause.
upvoted 0 times
Destiny
1 months ago
D) Add csrfProtection.generateToken as a middleware step in the controller.
upvoted 0 times
...
Johnetta
1 months ago
A) Add the token in the ISML template.
upvoted 0 times
...
...
Rebbecca
2 months ago
Adding the token in the ISML template is the right move. That's the standard way to include the CSRF token in the page.
upvoted 0 times
Tamra
1 months ago
D) Add csrfProtection.generateToken as a middleware step in the controller.
upvoted 0 times
...
Chi
1 months ago
A) Add the token in the ISML template.
upvoted 0 times
...
...
Tammara
2 months ago
I'm not sure about deleting the existing CSRF whitelists in Business Manager. Maybe adding csrfProtection.generateToken as a middleware step in the controller would be more effective.
upvoted 0 times
...
Domingo
2 months ago
I agree with Dominque. Extending the CSRF token validity might also be a good idea.
upvoted 0 times
...
Dominque
2 months ago
I think adding the token in the ISML template could help.
upvoted 0 times
...

Save Cancel