List of questions
Related questions
Question 293 - SY0-701 discussion
A security analyst finds a rogue device during a monthly audit of current endpoint assets that are connected to the network. The corporate network utilizes 002.1X for access control. To be allowed on the network, a device must have a Known hardware address, and a valid user name and password must be entered in a captive portal. The following is the audit report:
Which of the following is the most likely way a rogue device was allowed to connect?
A.
A user performed a MAC cloning attack with a personal device.
B.
A DMCP failure caused an incorrect IP address to be distributed
C.
An administrator bypassed the security controls for testing.
D.
DNS hijacking let an attacker intercept the captive portal traffic.
Your answer:
0 comments
Sorted by
Leave a comment first