Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam CAS-003 topic 1 question 370 discussion

Actual exam question from CompTIA's CAS-003
Question #: 370
Topic #: 1
[All CAS-003 Questions]

SIMULATION -
You are a security analyst tasked with interpreting an Nmap scan output from Company A's privileged network.
The company's hardening guidelines indicate the following:
✑ There should be one primary server or service per device.
✑ Only default ports should be used.
Non-secure protocols should be disabled.


INSTRUCTIONS -
Using the Nmap output, identify the devices on the network and their roles, and any open ports that should be closed. For each device found, add a device entry to the Devices Discovered list, with the following information:
✑ The IP address of the device
✑ The primary server or service of the device
✑ The protocol(s) that should be disabled based on the hardening guidelines
To select multiple protocols, use CTRL+CLICK.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.


Show Suggested Answer Hide Answer
Suggested Answer: See the explanation below.
10.1.45.65 ג€" FTP Server ג€" Disable 8080
10.1.45.66 ג€" Email Serve ג€" Disable 25 and 415
10.1.45.67 ג€" Web Server ג€" Disable 21, 80
10.1.45.68 ג€" UTM Appliance ג€" Disable 21

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
D1960
Highly Voted 2 years, 8 months ago
Maybe: 10.1.45.65 SFTP Server Disable 8080 10.1.45.66 Email Server Disable 415 and 443 10.1.45.67 Web Server Disable 21, 80 10.1.45.68 UTM Appliance Disable 21
upvoted 9 times
cvMikazuki
2 years, 5 months ago
concur with this. seems right.
upvoted 2 times
...
...
D1960
Most Recent 2 years, 7 months ago
10.1.45.68 UTM Appliance? I am not seeing any other option that looks correct. But I don't see anything indicating 10.1.45.68 is a UTM Appliance.
upvoted 1 times
...
D1960
2 years, 11 months ago
Or maybe 10.1.45.66 should be a second web server, and there should be no email server? The question instructs to only use default ports. 587 is not a default port for a mail server. Maybe we should close 415 and 587. 443 is a standard port, and secure.
upvoted 1 times
...
D1960
2 years, 11 months ago
Maybe: 10.1.45.65 is a SFTP server, not a FTP server 10.1.45.66 port 25 is already closed. 443 is open and should be close
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...