exam questions

Exam PT0-001 All Questions

View all questions & answers for the PT0-001 exam

Exam PT0-001 topic 1 question 184 discussion

Actual exam question from CompTIA's PT0-001
Question #: 184
Topic #: 1
[All PT0-001 Questions]

During a vulnerability assessment, the security consultant finds an XP legacy system that is running a critical business function. Which of the following mitigations is BEST for the consultant to conduct?

  • A. Update to the latest Microsoft Windows OS.
  • B. Put the machine behind the WAF.
  • C. Segment the machine from the main network.
  • D. Disconnect the machine.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️
Reference:
https://ocio.wa.gov/sites/default/files/public/ModernizationOfLegacyITSystems2014.pdf?n7bd

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Dave1212
Highly Voted 3 years, 11 months ago
C. Segment the machine from the main network. Seems most logical to restrict access to known users only.
upvoted 10 times
sknath
3 years, 11 months ago
Do you have any reference againt it? I have done some searching but I did find any document reference which says about the segmentation. I would go for B https://securityintelligence.com/posts/secure-legacy-systems-cybersecurity/
upvoted 1 times
sknath
3 years, 11 months ago
I will consider XP system as Legacy infrastructure
upvoted 1 times
x0hmei
3 years, 10 months ago
Yes XP is most def Legacy!!! B will be wrong since no where does it say they are running a WEB based application. XP is most likely running some DOS based application if it's critical I bet. C is still your best choice
upvoted 4 times
...
...
...
...
miabe
Most Recent 2 years, 9 months ago
Selected Answer: C
looks good to me
upvoted 1 times
...
mattlai
3 years, 2 months ago
srsly? no a? so call segmentation wouldnt save ur day but upgrading the os will do
upvoted 1 times
...
versun
3 years, 10 months ago
Answer is C
upvoted 2 times
...
smalltech
3 years, 10 months ago
B. https://securityintelligence.com/the-living-dead-how-to-protect-legacy-systems/ A single legacy system can be the gateway for malware to spread throughout a network. You must also ensure that those systems are not directly accessible from the internet, and guarantee that any communication with them is restricted to minimal need. This can be achieved by placing these systems in their own network segment behind a router or firewall.
upvoted 1 times
...
skipcrab
3 years, 10 months ago
CompTIA loves to segment, that is the answer most of the time when it's pertaining to security, and it's the answer this time too.
upvoted 2 times
...
boooliyooo
3 years, 10 months ago
C. segment out to be out-of-network if it must be used.. while behind a WAF pushes the legacy OS nearer to the internet...?!
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago