VA-003 Assess Vault tokens • 10 Questions
10 VA-003 Assess Vault tokens practice questions with answers and explanations. Free, no signup.
A large enterprise runs a microservices architecture on Kubernetes. Each microservice authenticates to Vault using the Kubernetes auth method with a service account token. The Vault administrator configured a role 'microservice-role' with a TTL of 24h and a max TTL of 48h. The microservices renew their tokens every 12 hours via a sidecar. Recently, the security team noticed that some tokens are still valid after 72 hours, causing a security concern. The audit logs show that the tokens were renewed successfully multiple times. The administrator reviews the role configuration and sees that 'token_renewable' is set to true. What is the most likely reason the tokens are exceeding the intended 48h max TTL?
Choose an answer to begin — your selection is scored in the full session.
10 questions · instant feedback and full explanations after every question.