exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 533 discussion

Actual exam question from CompTIA's SY0-601
Question #: 533
Topic #: 1
[All SY0-601 Questions]

During an internal penetration test, a security analyst identified a network device that had accepted cleartext authentication and was configured with a default credential. Which of the following recommendations should the security analyst make to secure this device?

  • A. Configure SNMPv1.
  • B. Configure SNMPv2c.
  • C. Configure SNMPv3.
  • D. Configure the default community string.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
ApplebeesWaiter1122
Highly Voted 1 year, 9 months ago
Selected Answer: C
C. Configure SNMPv3. In this scenario, the security analyst discovered a network device with cleartext authentication and a default credential. To secure the device, the best recommendation is to configure SNMPv3. SNMP (Simple Network Management Protocol) is commonly used for network monitoring and management. SNMPv1 and SNMPv2c use cleartext authentication, which means that the credentials are transmitted without encryption, making them vulnerable to eavesdropping and potential credential theft. SNMPv3 is the most secure version of SNMP and provides several security features, including data encryption, message integrity, and authentication. It uses technologies such as HMAC (Hash-based Message Authentication Code) and encryption algorithms to protect sensitive information, making it the preferred choice when securing network devices and preventing unauthorized access or misuse.
upvoted 8 times
...
LeonardSnart
Most Recent 1 year, 9 months ago
Selected Answer: C
Similar question from Darril Gibson's book Chapter 3 practice questions, but the answer there is SSH. However he provides the answer still for this question as below. "9. Network administrators manage network devices remotely. However, a recent security audit discovered they are using a protocol that allows them to send credentials over the network in cleartext. Which of the following methods should be adopted to eliminate this vulnerability? The scenario indicates that administrators are likely using Simple Network Management Protocol v1 (SNMPv1), SNMPv2, or SNMPv2c. These protocols all send a community string over the network in cleartext. SNMPv3 encrypts the credentials before sending them over the network."
upvoted 2 times
...
mtnews
1 year, 10 months ago
Selected Answer: C
Going with SNMPv3, is the most secure. Answer D makes no sense
upvoted 3 times
...
CastratedMonk
1 year, 10 months ago
Selected Answer: C
What a strange set of answers, but just going with the most secure answer
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago