Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam SY0-501 topic 1 question 967 discussion

Actual exam question from CompTIA's SY0-501
Question #: 967
Topic #: 1
[All SY0-501 Questions]

Which of the following implements two-factor authentication on a VPN?

  • A. Username, password, and source IP
  • B. Public and private keys
  • C. HOTP token and logon credentials
  • D. Source and destination IP addresses
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
exiledwl
Highly Voted 3 years, 3 months ago
I'm putting C on the real exam. If I fail, I fail with dignity.
upvoted 47 times
Katana19
3 years, 2 months ago
I love you !!
upvoted 4 times
...
...
MikeDuB
Highly Voted 3 years, 4 months ago
Why isn't this C?
upvoted 6 times
...
fury247
Most Recent 2 years, 9 months ago
HMAC-based One-Time Password = something you have Logon creds (Username/Password) = something you know Choosing C
upvoted 1 times
...
Brittle
2 years, 10 months ago
It has been specified here that authentication on a vpn so I think A is correct
upvoted 1 times
...
L1singh
3 years ago
The answer is not A, A is not secure IP (somewhere you are) can be spoofed. The answer is C, ill go for C on the exam
upvoted 3 times
...
zadams16
3 years, 1 month ago
cant you spoof your public IP address?
upvoted 2 times
Funkydave
3 years ago
no you can't
upvoted 1 times
...
...
Joker20
3 years, 2 months ago
To connect via VPN using two-factor authentication after set-up: Go to the URL and login with their username and password. Choose which authentication method: Duo Push, phone call, text or passcode. If they choose Duo Push, a notification will be sent to their phone. They simply have to select the “Approve” button to redirect their browser to the SSL VPN service homepage. Then they can launch “Tunnel Mode” to direct traffic through their VPN. See What are the authentication choices? for more information on how each method works. https://www.otava.com/reference/two-factor-authentication-for-vpn-login-faq/
upvoted 1 times
...
lapejor
3 years, 2 months ago
Based on the link below both C and A are corrects: https://cheatsheetseries.owasp.org/cheatsheets/Multifactor_Authentication_Cheat_Sheet.html
upvoted 1 times
...
dgse
3 years, 5 months ago
Both answers A and C look right to me. A: something you know + somewhere you are. C: something you have (to receive the HOTP) + something you know.
upvoted 5 times
DisasterRec
3 years, 4 months ago
C is better option, because A is limited in usage, because source IP can be public or private.
upvoted 5 times
DisasterRec
3 years, 4 months ago
Also public IP can hide several VPN users.
upvoted 1 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...