exam questions

Exam 400-007 All Questions

View all questions & answers for the 400-007 exam

Exam 400-007 topic 1 question 234 discussion

Actual exam question from Cisco's 400-007
Question #: 234
Topic #: 1
[All 400-007 Questions]

Company XYZ is running SNMPv1 in their network and understands that it has some flaws. They want to change the security design to implement SNMPv3 in the network. Which network threat is SNMPv3 effective against?

  • A. DDoS attack
  • B. masquerade threats
  • C. brute force dictionary attack
  • D. man-in-the-middle attack
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Devsin2000
2 months, 1 week ago
Selected Answer: D
SNMPv3 Prevents MITM attacks, replay attacks, and tampering. SNMPv1, is plain text with no authentication. MITM attack is more likely, the doesn't need to impersonate - simply listen n.
upvoted 1 times
...
kalulosu
3 months, 2 weeks ago
Selected Answer: B
I think ans is B. SNMPv3 combats the threat of impersonation by providing authentication and encryption capabilities; SNMPv3 provides enhanced user and message authentication and data encryption, reducing the risk of unauthorized entities acting as legitimate administrators in the network . In this way, it provides protection against the threat of impersonation.
upvoted 1 times
...
xz_sky
5 months, 2 weeks ago
Selected Answer: B
Should be B https://www.cisco.com/c/en/us/td/docs/routers/xr12000/software/xr12k_r3-9/system_management/configuration/guide/yc39xr12k_chapter10.html
upvoted 3 times
...
bdp123
6 months, 4 weeks ago
Selected Answer: B
https://snmp.com/snmpv3/snmpv3_intro.shtml#:~:text=Security%20Threats%20and%20SNMPv3%20Protection,-Secure%20management%20with&text=Prevents%20eavesdropping%20by%20protocol%20analyzers%2C%20etc.%2C%20by%20using%20encryption.&text=Verifies%20operator%20authorization%20and%20protects,of%20policy%2Dbased%20management).
upvoted 1 times
...
blurain
9 months, 1 week ago
Selected Answer: B
https://snmp.com/snmpv3/snmpv3_intro.shtml "Security Threats and SNMPv3 Protection" section.
upvoted 4 times
...
kzqc
10 months, 1 week ago
Selected Answer: B
Change mind. Should be B - masquerade threats
upvoted 1 times
...
kzqc
10 months, 2 weeks ago
Selected Answer: D
https://www.comparitech.com/net-admin/common-snmp-vulnerabilities/ Both the original SNMPv1 and SNMPv2c are vulnerable to this type of attack because they display community strings in clear-text. As a consequence, one of the best ways to protect against DoS and man-in-the-middle attacks is to avoid using SNMPv1 and SNMPv2c, while restricting SNMP-enabled devices to read-only access.
upvoted 1 times
kzqc
10 months, 1 week ago
Change mind. Should be B - masquerade threats
upvoted 1 times
...
...
ZHICHENG
11 months, 3 weeks ago
Selected Answer: C
SSL is "man-in-the-middle attack",so D is not.
upvoted 2 times
...
Zface
1 year ago
A https://www.comparitech.com/net-admin/common-snmp-vulnerabilities/ CVE-2002-0013 – Attackers can exploit SNMPv1 to launch a DoS attack or gain access privileges by overwhelming SNMP by sending a high number of GetRequest, GetNextRequest, or SetRequest messages. CVE-2002-0012 – Attackers can use SNMPv1 trap handling to execute a DoS attack or gain access privileges.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago