Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

VMware 2V0-72.22 Exam - Topic 12 Question 91 Discussion

Which two statements are true regarding Spring Security? (Choose two.)
A) Access control can be configured at the method level. and C) Authentication data can be accessed using a variety of different mechanisms, including databases and LDAP.
B) A special Java Authentication and Authorization Service (JAAS) policy file needs to be configured.
D) In the authorization configuration, the usage of permitAll () allows bypassing Spring security completely.
E) It provides a strict implementation of the Java EE Security specification.

VMware 2V0-72.22 Exam - Topic 12 Question 91 Discussion

Actual exam question for VMware's 2V0-72.22 exam
Question #: 91
Topic #: 12
[All 2V0-72.22 Questions]

Which two statements are true regarding Spring Security? (Choose two.)

Show Suggested Answer Hide Answer
Suggested Answer: A, C

Spring Security is a framework that provides comprehensive security services for Java applications, such as authentication, authorization, encryption, session management, and more. One of its features is method security, which allows applying access control rules at the method level using annotations or XML configuration. Another feature is authentication, which is the process of verifying the identity of a user or a system. Spring Security supports various authentication mechanisms, such as username and password, tokens, certificates, etc., and can access authentication data from different sources, such as databases, LDAP directories, in-memory stores, etc.


Contribute your Thoughts:

0/2000 characters
William
3 days ago
E) is misleading, Spring Security isn't strictly Java EE compliant.
upvoted 0 times
...
Carrol
8 days ago
Wait, D) lets you bypass security? That sounds risky!
upvoted 0 times
...
Annice
13 days ago
Totally agree with A) and C)!
upvoted 0 times
...
Graciela
19 days ago
I thought B) was required, but I guess not?
upvoted 0 times
...
Jettie
24 days ago
A) and C) are definitely true!
upvoted 0 times
...
Gracia
29 days ago
I think D is misleading; permitAll() doesn't bypass security entirely, it just allows access without authentication, right?
upvoted 0 times
...
Lemuel
1 month ago
C seems right because we covered how Spring can integrate with different authentication sources like LDAP and databases.
upvoted 0 times
...
Nettie
1 month ago
I'm not entirely sure about JAAS; I feel like we talked about it, but I can't recall if it's necessary for Spring Security.
upvoted 0 times
...
Jolanda
1 month ago
I remember discussing method-level security in class, so I think A is definitely one of the correct answers.
upvoted 0 times
...

Save Cancel