exam questions

Exam N10-007 All Questions

View all questions & answers for the N10-007 exam

Exam N10-007 topic 1 question 136 discussion

Actual exam question from CompTIA's N10-007
Question #: 136
Topic #: 1
[All N10-007 Questions]

A network administrator wishes to ensure there are no unnecessary open communication paths into a server. Using a port scanner, the administrator finds that ports are reported as closed. Which of the following BEST explains this response?

  • A. The ports belong to an active system and are denying requests
  • B. The ports are associated with deprecated services
  • C. The ports do not belong to a live system
  • D. The ports replied with a SYN/ACK response
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
pshimsmart
Highly Voted 5 years ago
A is correct. If you send an SYN packet to a closed port, an RST flag will be sent back. “When a port is closed, RFC 793 behavior is to respond with an RST “reset” packet.”
upvoted 9 times
markychaz
4 years, 11 months ago
This is exactly what I was thinking
upvoted 4 times
...
Nisita
1 year, 7 months ago
It seems Nmap is creating some confusion here as its states are defined a bit different. But even in case of considering Nmap to be our port scanner, then choice C is closer to the answer, rather than choice B. Since the question has not specified 'Nmap', choice A is the Best.
upvoted 1 times
...
...
MyName7
Most Recent 3 years, 6 months ago
When a port scanner is used, several port states may be reported: 1. Open/listening: The host sent a reply indicating that a service is listening on the port. There was a response from the port. 2. Closed or denied or not listening: No process is listening on that port. Access to this port will likely be denied. 3. Filtered or blocked: There was no reply from the host, meaning that the port is not listening or the port is secured and filtered.
upvoted 1 times
...
MyName7
3 years, 6 months ago
When a port is closed, no process is listening on that port and access to this port will likely be denied. When the port is open/listening, the host sends a reply indicating that a service is listening on the port. When the port is filtered or blocked, there is no reply from the host, meaning that the port is not listening or the port is secured and filtered.
upvoted 1 times
...
aynur_ganbarova
3 years, 6 months ago
The answer should be A . not B.
upvoted 2 times
Renfri
3 years, 3 months ago
nope, those are FILTERED ports
upvoted 1 times
...
...
Callas
3 years, 6 months ago
B is correct. "A closed port is accessible (it receives and responds to Nmap probe packets), but there is no application listening on it... Administrators may want to consider blocking such ports with a firewall. Then they would appear in the filtered state, discussed next. filtered Nmap cannot determine whether the port is open because packet filtering prevents its probes from reaching the port." So if it was A, then it would show up as "filtered" rather than "closed".
upvoted 2 times
...
Neela
4 years, 5 months ago
Answer - B is correct https://www.wise-geek.com/what-is-a-closed-port.htm#
upvoted 4 times
...
socket_master
4 years, 6 months ago
I see no reason why a deprecated service wouldn't respond to a port scan the same way it always responded. Deprecation doesn't mean something doesn't work anymore, it's just that there's usually a newer version.
upvoted 4 times
...
CarlosJamesColumna
4 years, 8 months ago
If they were denaying requests, i think it will show "filtering"
upvoted 1 times
...
CarlosJamesColumna
4 years, 8 months ago
Depracated means that somethin can be reached but it doesn't respond, so it justifies the answer to be B.
upvoted 1 times
...
Primal
4 years, 9 months ago
B is correct. Popular port scanner "Nmap" defines a closed port as follows: "A closed port is accessible (it receives and responds to Nmap probe packets), but there is no application listening on it."
upvoted 2 times
Scott_brily
4 years, 9 months ago
No application as in no services is associated with such port. A is the right answer. My previous cert buddies agreed too
upvoted 4 times
...
...
Javier25
4 years, 11 months ago
question says he used a port scanner
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago