ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 508 - N10-008 discussion

Report
Export

A network administrator is implementing process changes based on recommendations following a recent penetration test. The testers used a method to gain access to the network that involved exploiting a publicly available and fixed remote code execution vulnerability in the VPN appliance.

Which of the following should the administrator do to BEST prevent this from happening again?

A.
Change default passwords on internet-facing hardware.
Answers
A.
Change default passwords on internet-facing hardware.
B.
Implement robust ACLs with explicit deny-all entries.
Answers
B.
Implement robust ACLs with explicit deny-all entries.
C.
Create private VLANs for management plane traffic.
Answers
C.
Create private VLANs for management plane traffic.
D.
Routinely upgrade all network equipment firmware.
Answers
D.
Routinely upgrade all network equipment firmware.
Suggested answer: D

Explanation:

Firmware is the software that runs on network equipment such as routers, switches, and VPN appliances. Firmware updates often contain bug fixes, security patches, and performance improvements that can prevent or mitigate vulnerabilities and attacks. By routinely upgrading all network equipment firmware, a network administrator can ensure that the network devices are running the latest and most secure versions of firmware and avoid exploiting known and fixed remote code execution vulnerabilities in the VPN appliance. Reference:

https://www.comptia.org/training/books/network-n10-008-study-guide (page 462)

asked 02/10/2024
Camille Rudio
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first