exam questions

Exam SY0-701 All Questions

View all questions & answers for the SY0-701 exam

Exam SY0-701 topic 1 question 138 discussion

Actual exam question from CompTIA's SY0-701
Question #: 138
Topic #: 1
[All SY0-701 Questions]

A company's end users are reporting that they are unable to reach external websites. After reviewing the performance data for the DNS severs, the analyst discovers that the CPU, disk, and memory usage are minimal, but the network interface is flooded with inbound traffic. Network logs show only a small number of DNS queries sent to this server. Which of the following best describes what the security analyst is seeing?

  • A. Concurrent session usage
  • B. Secure DNS cryptographic downgrade
  • C. On-path resource consumption
  • D. Reflected denial of service
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
499c5c4
Highly Voted 11 months, 2 weeks ago
A reflected denial of service (DoS) attack occurs when an attacker sends forged requests to a server, causing the server to respond to the spoofed IP address (the target) with a large volume of traffic. In the context of DNS, this often involves DNS amplification attacks, where small DNS queries result in large responses being sent to the target. This matches the described symptoms of minimal resource usage on the DNS server but a flood of inbound traffic. The best description of the observed situation, where the DNS server is overwhelmed by inbound traffic with minimal DNS queries, is that it is experiencing a reflected denial of service attack. Therefore, the correct answer is: D. Reflected denial of service
upvoted 11 times
...
MAKOhunter33333333
Highly Voted 11 months, 3 weeks ago
Selected Answer: D
1. Unable to reach external websites, denial of service 2. Flooded with traffic 3. The traffic is not coming from with in via verifying with network logs DOS is best option based on those details
upvoted 7 times
...
dbrowndiver
Most Recent 9 months, 1 week ago
Selected Answer: D
Minimal Resource Usage: The DNS server's CPU, disk, and memory usage are minimal, indicating that the server itself is not processing a large number of queries. However, the network interface is flooded with traffic, which is a key indicator of a reflected DoS attack. Flooded Network Interface: The flooding of the network interface with inbound traffic without a corresponding increase in actual DNS query processing suggests that the server is receiving unsolicited responses, characteristic of a reflected DoS attack. Why this is the best choice, because the symptoms match a reflected DoS, where the server is overwhelmed by traffic that it did not initiate, preventing legitimate users from accessing external websites due to the congestion
upvoted 2 times
...
MAKOhunter33333333
11 months, 3 weeks ago
1. Unable to reach external websites, denial of service 2. Flooded with traffic 3. The traffic is not coming from with in via verifying with network logs DOS is best option based on those details
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago