ExamGecko
Question list
Search
Search

Related questions











Question 28 - 312-50v12 discussion

Report
Export

Which of the following is the BEST way to defend against network sniffing?

A.
Using encryption protocols to secure network communications
Answers
A.
Using encryption protocols to secure network communications
B.
Register all machines MAC Address in a Centralized Database
Answers
B.
Register all machines MAC Address in a Centralized Database
C.
Use Static IP Address
Answers
C.
Use Static IP Address
D.
Restrict Physical Access to Server Rooms hosting Critical Servers
Answers
D.
Restrict Physical Access to Server Rooms hosting Critical Servers
Suggested answer: A

Explanation:

https://en.wikipedia.org/wiki/Sniffing_attack

To prevent networks from sniffing attacks, organizations and individual users should keep away from applications using insecure protocols, like basic HTTP authentication, File Transfer Protocol (FTP), and Telnet. Instead, secure protocols such as HTTPS, Secure File Transfer Protocol (SFTP), and Secure Shell (SSH) should be preferred. In case there is a necessity for using any insecure protocol in any application, all the data transmission should be encrypted. If required,

VPN (Virtual Private Networks) can be used to provide secure access to users.

NOTE: I want to note that the wording "best option" is valid only for the EC-Council's exam since the other options will not help against sniffing or will only help from some specific attack vectors.

The sniffing attack surface is huge. To protect against it, you will need to implement a complex of measures at all levels of abstraction and apply controls at the physical, administrative, and technical levels. However, encryption is indeed the best option of all, even if your data is intercepted - an attacker cannot understand it.

asked 18/09/2024
Arnold Bronson TCHOFFO
44 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first