Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Salesforce Exam Identity and Access Management Architect Topic 4 Question 16 Discussion

Actual exam question for Salesforce's Identity and Access Management Architect exam
Question #: 16
Topic #: 4
[All Identity and Access Management Architect Questions]

Universal Containers (UC) is building an integration between Salesforce and a legacy web applications using the canvas framework. The security for UC has determined that a signed request from Salesforce is not an adequate authentication solution for the Third-Party app. Which two options should the Architect consider for authenticating the third-party app using the canvas framework? Choose 2 Answers

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

Jin
2 months ago
I hear the security team is also considering a good old-fashioned handshake as an authentication method. You know, for that personal touch.
upvoted 0 times
Niesha
5 days ago
C) Utilize Canvas OAuth flow to allow the third-party application to authenticate itself against Salesforce as the Idp.
upvoted 0 times
...
Scarlet
10 days ago
That handshake idea sounds interesting, but I think we should stick to more secure options.
upvoted 0 times
...
Chuck
11 days ago
B) Utilize Authorization Providers to allow the third-party application to authenticate itself against Salesforce as the Idp.
upvoted 0 times
...
Gilma
1 months ago
A) Utilize the SAML Single Sign-on flow to allow the third-party to authenticate itself against UC's IdP.
upvoted 0 times
...
...
Lezlie
2 months ago
Maybe we should just tell the third-party app to use the 'password123' login credentials. That's secure, right?
upvoted 0 times
Becky
3 hours ago
No, using 'password123' as login credentials is not secure.
upvoted 0 times
...
Tawny
3 days ago
B) Utilize Authorization Providers to allow the third-party appliction to authenticate itself against Salesforce as the Idp.
upvoted 0 times
...
Tresa
13 days ago
A) Utilize the SAML Single Sign-on flow to allow the third-party to authenticate itself against UC's IdP.
upvoted 0 times
...
...
Fabiola
2 months ago
Wait, so we can't just use a signed request from Salesforce? That's like the easiest option! What's the point of having all these fancy authentication methods if a simple signed request won't work?
upvoted 0 times
...
Pauline
2 months ago
Creating a registration handler Apex class? Sounds like a lot of custom code just to authenticate the app. I'd rather go with a more standard solution like SAML or OAuth.
upvoted 0 times
Ellen
1 months ago
B) Utilize Authorization Providers to allow the third-party appliction to authenticate itself against Salesforce as the Idp.
upvoted 0 times
...
Delfina
2 months ago
A) Utilize the SAML Single Sign-on flow to allow the third-party to authenticate itself against UC's IdP.
upvoted 0 times
...
...
Catalina
2 months ago
I'm not sure about option C and D. They might not provide the level of security needed for the integration.
upvoted 0 times
...
Janessa
2 months ago
I agree with Providencia. Using SAML Single Sign-on and Authorization Providers seems like a secure way to authenticate.
upvoted 0 times
...
Cyndy
2 months ago
I think the Canvas OAuth flow is the way to go. It allows the third-party app to authenticate directly with Salesforce, which seems more straightforward than going through UC's IdP.
upvoted 0 times
...
Providencia
2 months ago
I think option A and B could work for authenticating the third-party app.
upvoted 0 times
...
Herminia
2 months ago
The SAML Single Sign-on flow seems like the most secure option to authenticate the third-party app against UC's IdP. This ensures that the app is validated before accessing Salesforce.
upvoted 0 times
Nohemi
1 months ago
B) Utilize Authorization Providers to allow the third-party application to authenticate itself against Salesforce as the Idp.
upvoted 0 times
...
Donte
2 months ago
A) Utilize the SAML Single Sign-on flow to allow the third-party to authenticate itself against UC's IdP.
upvoted 0 times
...
...

Save Cancel