Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Salesforce Exam B2C Commerce Developer Topic 10 Question 53 Discussion

Actual exam question for Salesforce's B2C Commerce Developer exam
Question #: 53
Topic #: 10
[All B2C Commerce Developer Questions]

In Log Center, a developer notes a number of Cross Site Request Forgery (CSRF) log entries. The developer knows that this happens when a CSRF token is either not found or is invalid, and is working to remedy the situation as soon as possible.

Which two courses of action might solve the problem?

Choose 2 answers

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

Nadine
5 days ago
Extending the CSRF token validity? Nah, that's just kicking the can down the road. Better to address the root cause.
upvoted 0 times
...
Rebbecca
12 days ago
Adding the token in the ISML template is the right move. That's the standard way to include the CSRF token in the page.
upvoted 0 times
...
Tammara
13 days ago
I'm not sure about deleting the existing CSRF whitelists in Business Manager. Maybe adding csrfProtection.generateToken as a middleware step in the controller would be more effective.
upvoted 0 times
...
Domingo
15 days ago
I agree with Dominque. Extending the CSRF token validity might also be a good idea.
upvoted 0 times
...
Dominque
18 days ago
I think adding the token in the ISML template could help.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77