exam questions

Exam SK0-005 All Questions

View all questions & answers for the SK0-005 exam

Exam SK0-005 topic 1 question 27 discussion

Actual exam question from CompTIA's SK0-005
Question #: 27
Topic #: 1
[All SK0-005 Questions]

A server administrator needs to harden a server by only allowing secure traffic and DNS inquiries. A port scan reports the following ports are open:
443
636
Which of the following open ports should be closed to secure the server properly? (Choose two.)

  • A. 21
  • B. 22
  • C. 23
  • D. 53
  • E. 443
  • F. 636
Show Suggested Answer Hide Answer
Suggested Answer: AC 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Pongsathorn
Highly Voted 2 years, 9 months ago
Selected Answer: AC
21 - FTP 22 - SSH 23 - Telnet 53 - DNS 443 - HTTPS 636 - LDAPS There are 3 ports which not secure and need to close 21, 23, 53 but the server provide DNS inquiries, so we don't close port 53.
upvoted 6 times
...
Musa007
Most Recent 2 years, 2 months ago
DNS can also use other ports for specialized purposes. For example, DNS over TLS (DoT) uses port 853, and DNS over HTTPS (DoH) typically uses port 443 to encapsulate DNS traffic within HTTPS That's why 53 is blocked
upvoted 1 times
ccoli
1 year ago
They shouldn't have ftp in the answer results. But since they said securing traffic and DNS I think the puposed answer of CD and is what they're looking for, they're just made it a trick question to try to glean more exam fees from people for a cert no one respects.
upvoted 1 times
...
...
Jfrican
2 years, 5 months ago
Then get a new scanner because it is not showing Ports 21 and 23
upvoted 2 times
...
zozo1978
2 years, 6 months ago
How could DNS Port 53 needs to be close where the question asking for DNS Port to be used ?
upvoted 1 times
...
nixonbii
2 years, 10 months ago
Selected Answer: AC
A - Why would you leave an unsecure FTP port open? C - Telnet is notorious for sending credentials over the network in plain text. If you close port 53 how will hosts on the network get name resolution?
upvoted 1 times
...
paperburn
2 years, 10 months ago
Selected Answer: AC
No ftp or telnet allowed
upvoted 1 times
...
Fineb
2 years, 11 months ago
A and C should be the best answer
upvoted 1 times
...
jagoichi
2 years, 11 months ago
AC Port 21 and File Transfer FTP is often thought of as a “not secure” file transfer protocol. This is mainly due to FTP sending data in clear text and offering an anonymous option with no password required. However, FTP is a trusted and still widely used protocol for transferring files Is port 23 secure? Port 23 – Telnet. A predecessor to SSH, is no longer considered secure and is frequently abused by malware.
upvoted 1 times
...
szl0144
2 years, 11 months ago
53 is for DNS query, why we need to close it?
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...