List of questions
Related questions
Question 148 - CAS-004 discussion
An organization's existing infrastructure includes site-to-site VPNs between datacenters. In the past year, a sophisticated attacker exploited a zero-day vulnerability on the VPN concentrator. Consequently, the Chief Information Security Officer (CISO) is making infrastructure changes to mitigate the risk of service loss should another zero-day exploit be used against the VPN solution.
Which of the following designs would be BEST for the CISO to use?
A.
Adding a second redundant layer of alternate vendor VPN concentrators
B.
Using Base64 encoding within the existing site-to-site VPN connections
C.
Distributing security resources across VPN sites
D.
Implementing IDS services with each VPN concentrator
E.
Transitioning to a container-based architecture for site-based services
Your answer:
0 comments
Sorted by
Leave a comment first