exam questions

Exam CS0-001 All Questions

View all questions & answers for the CS0-001 exam

Exam CS0-001 topic 1 question 64 discussion

Actual exam question from CompTIA's CS0-001
Question #: 64
Topic #: 1
[All CS0-001 Questions]

A university wants to increase the security posture of its network by implementing vulnerability scans of both centrally managed and student/employee laptops.
The solution should be able to scale, provide minimum false positives and high accuracy of results, and be centrally managed through an enterprise console.
Which of the following scanning topologies is BEST suited for this environment?

  • A. A passive scanning engine located at the core of the network infrastructure
  • B. A combination of cloud-based and server-based scanning engines
  • C. A combination of server-based and agent-based scanning engines
  • D. An active scanning engine installed on the enterprise console
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Jeend
2 years, 4 months ago
D. high accuracy of results, and be centrally managed through an enterprise console.
upvoted 1 times
...
somsom
4 years, 2 months ago
D is the answer
upvoted 1 times
...
SecurityDude
4 years, 3 months ago
I am leaning towards C.
upvoted 1 times
...
Kuku55
4 years, 3 months ago
This is C, there is already a technology like this. https://www.tenable.com/blog/tenable-introduces-agent-based-scanning-in-nessus-manager What the question meant is to have a centrally manage console - is to have a console that can manage all systems for both central and remote laptops which C suffices.
upvoted 1 times
...
Acrisius
4 years, 5 months ago
Answer - D. I thought about C but this is about hitting all devices and the student one too. I think the idea is that you cant install an agent on the student devices and active scanning will pick em up. Similar Q on 002
upvoted 2 times
...
hj5354
4 years, 9 months ago
Since the college wants to ensure there is a centrally-managed enterprise console, using an active scanning engine installed on the enterprise console would best meet these requirements. Then, the college’s cybersecurity analysts could perform scans on any devices that are connected to the network using the active scanning engine at the desired intervals. Agent-based scanning would be ineffective since the college cannot force the installation of the agents onto each of the personally owned devices brought in by the students or faculty. A cloud-based or server-based engine may be useful, but it won't address the centrally-managed requirement. Passive scanning is less intrusive but is subject to a high number of false positives.
upvoted 4 times
...
s3curity1
4 years, 11 months ago
Isn't this C - combination of server-based and agent-based? Server based scanning will be able to scan the centrally managed machines without any issues, and as for student/employee laptops - this will be scanned using agent based since they will not be permanently connected on the university's network. The scans for the laptops could be triggered over the internet.
upvoted 1 times
s3curity1
4 years, 11 months ago
or i've mixed my explanation with server based and cloud based
upvoted 1 times
TheThreatGuy
4 years, 11 months ago
I thought the same thing. I lean toward B here....
upvoted 1 times
...
...
...
s3curity
5 years, 5 months ago
anyone care to explain?
upvoted 1 times
MikeTGoody
5 years, 4 months ago
Active scanning engine would scan every device that connects to it before access to the network is allowed
upvoted 5 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago