exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 576 discussion

Actual exam question from CompTIA's SY0-601
Question #: 576
Topic #: 1
[All SY0-601 Questions]

A security analyst is scanning a company's public network and discovers a host is running a remote desktop that can be used to access the production network. Which of the following changes should the security analyst recommend?

  • A. Changing the remote desktop port to a non-standard number
  • B. Setting up a VPN and placing the jump server inside the firewall
  • C. Using a proxy for web connections from the remote desktop server
  • D. Connecting the remote server to the domain and increasing the password length
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
ApplebeesWaiter1122
Highly Voted 1 year, 11 months ago
Selected Answer: B
Placing the jump server inside the firewall and configuring a Virtual Private Network (VPN) for secure remote access would be the best recommendation to enhance security in this scenario. By using a jump server, which is a secure intermediary system, the security analyst can create a controlled access point to the production network. The jump server will act as a gateway for remote users to connect to the production network securely, while also reducing the attack surface by limiting direct access to the production network from external sources. Using a VPN ensures that data transmitted between the remote desktop and the production network is encrypted, protecting it from potential eavesdropping and unauthorized access. This approach helps to secure the remote access process and minimizes the risk of unauthorized access to critical resources within the production network. Additionally, by placing the jump server inside the firewall, the organization can apply additional security measures, such as access controls and monitoring, to further protect the production network from potential threats.
upvoted 14 times
...
ps1hacker
Highly Voted 1 year, 2 months ago
Selected Answer: B
Comptia LOVES their jump servers
upvoted 6 times
...
Gabuu
Most Recent 1 year, 3 months ago
I'll go for B
upvoted 1 times
...
Dark_Tarantula
1 year, 8 months ago
Selected Answer: A
I would choose A, simply because you cannot place a host inside a firewall, you would place it behind a firewall so either the wording is horribly wrong, or the answer Is wrong. C & D are easily discarded
upvoted 1 times
Narobi
1 year, 8 months ago
Pretty sure they meant that it would be placed where it would receive protection from the firewall when they said “within”. As in within its boundaries
upvoted 3 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...