ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 196 - CS0-003 discussion

Report
Export

A company has the following security requirements:

. No public IPs

* All data secured at rest

. No insecure ports/protocols

After a cloud scan is completed, a security analyst receives reports that several misconfigurations are putting the company at risk. Given the following cloud scanner output:

Which of the following should the analyst recommend be updated first to meet the security requirements and reduce risks?

A.
VM_PRD_DB
Answers
A.
VM_PRD_DB
B.
VM_DEV_DB
Answers
B.
VM_DEV_DB
C.
VM_DEV_Web02
Answers
C.
VM_DEV_Web02
D.
VM_PRD_Web01
Answers
D.
VM_PRD_Web01
Suggested answer: D

Explanation:

This VM has a public IP and an open port 80, which violates the company's security requirements of no public IPs and no insecure ports/protocols. It also exposes the VM to potential attacks from the internet. This VM should be updated first to use a private IP and close the port 80, or use a secure protocol such as HTTPS.

Reference [CompTIA CySA+ Study Guide: Exam CS0-003, 3rd Edition], Chapter 2: Cloud and Hybrid Environments, page 67. [What is a Public IP Address?] [What is Port 80?]

asked 02/10/2024
Nogueira Elder
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first