ExamGecko
Question list
Search
Search

Related questions











Question 342 - 312-50v12 discussion

Report
Export

After an audit, the auditors Inform you that there is a critical finding that you must tackle Immediately. You read the audit report, and the problem is the service running on port 389. Which service Is this and how can you tackle the problem?

A.
The service is LDAP. and you must change it to 636. which is LDPAPS.
Answers
A.
The service is LDAP. and you must change it to 636. which is LDPAPS.
B.
The service is NTP. and you have to change It from UDP to TCP in order to encrypt it
Answers
B.
The service is NTP. and you have to change It from UDP to TCP in order to encrypt it
C.
The findings do not require immediate actions and are only suggestions.
Answers
C.
The findings do not require immediate actions and are only suggestions.
D.
The service is SMTP, and you must change it to SMIME. which is an encrypted way to send emails.
Answers
D.
The service is SMTP, and you must change it to SMIME. which is an encrypted way to send emails.
Suggested answer: A

Explanation:

https://en.wikipedia.org/wiki/Lightweight_Directory_Access_Protocol LDAP, the Lightweight Directory Access Protocol, is a mature, flexible, and well supported standardsbased mechanism for interacting with directory servers. It's often used for authentication and storing information about users, groups, and applications, but an LDAP directory server is a fairly generalpurpose data store and can be used in a wide variety of applications.

The LDAP protocol can deal in quite a bit of sensitive data: Active Directory usernames, login attempts, failed-login notifications, and more. If attackers get ahold of that data in flight, they might be able to compromise data like legitimate

AD credentials and use it to poke around your network in search of valuable assets.

Encrypting LDAP traffic in flight across the network can help prevent credential theft and other malicious activity, but it's not a failsafe—and if traffic is encrypted, your own team might miss the signs of an attempted attack in progress.

While LDAP encryption isn't standard, there is a nonstandard version of LDAP called Secure LDAP, also known as "LDAPS" or "LDAP over SSL" (SSL, or Secure Socket Layer, being the now-deprecated ancestor of Transport Layer

Security).

LDAPS uses its own distinct network port to connect clients and servers. The default port for LDAP is port 389, but LDAPS uses port 636 and establishes TLS/SSL upon connecting with a client.

asked 18/09/2024
Suneth Jayalath
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first