exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 381 discussion

Actual exam question from CompTIA's SY0-601
Question #: 381
Topic #: 1
[All SY0-601 Questions]

Users report access to an application from an internal workstation is still unavailable to a specific server, even after a recent firewall rule implementation that was requested for this access. ICMP traffic is successful between the two devices. Which of the following tools should the security analyst use to help identify if the traffic is being blocked?

  • A. nmap
  • B. tracert
  • C. ping
  • D. ssh
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Ahmed_aldouky
Highly Voted 2 years, 3 months ago
Selected Answer: A
To help identify if the traffic is being blocked between the two devices, the security analyst should use option A: nmap. nmap is a network exploration and security auditing tool that can be used to identify open ports and services on a remote host. It can also be used to determine if a particular port is being blocked by a firewall. By using nmap to scan the server that the users are attempting to access, the security analyst can determine if the firewall rule implementation was successful and if the necessary port is open and available. Option B: tracert, would not help identify if the traffic is being blocked. Tracert is a tool that helps identify the network path between two devices, but it does not provide information about whether or not traffic is being blocked.
upvoted 9 times
PropheticBettor
1 year, 4 months ago
Tracert can be used to determine if traffic is being blocked by letting you know whether the traffic is reaching a certain location. If tracert can show that it's not going where it's supposed to, one can identify that the proper route is off course
upvoted 4 times
...
...
ApplebeesWaiter1122
Highly Voted 1 year, 12 months ago
Selected Answer: A
The nmap tool is a versatile network scanning and host discovery tool that can be used to probe network hosts and identify open ports, services, and potential firewall restrictions. By using nmap to scan the specific server from the internal workstation, the security analyst can determine if the required port for the application is open and accessible. If the port is reported as filtered or closed, it indicates that the traffic is likely being blocked by a firewall rule or some other network restriction. This information can help in troubleshooting and resolving the connectivity issue.
upvoted 7 times
...
Marleigh
Most Recent 1 year ago
i swear, 9 times out of 10, nmap will be the answer. even if you dont understand the question. nmap is just too OP
upvoted 3 times
...
Selected Answer: A
ICMP traffic was successful, thus; using ping tests and traceroute commands wouldn't be useful in fixing the problem. SSH isn't a tool but a protocol used for remote access. Conducting port scanning using tools like Nmap to verify if the necessary ports for the application are open and accessible from the internal workstation to the specific server would probably fix the problem.
upvoted 1 times
...
alicia2024
1 year, 4 months ago
Selected Answer: B
The tracert (traceroute) tool is used to trace the route that packets take from the source to the destination. By examining the output of tracert, the security analyst can identify the hops along the network path between the workstation and the server. This can help determine if there are any network devices, such as routers or firewalls, that may be blocking the traffic.
upvoted 2 times
...
ramesh2022
2 years, 3 months ago
Selected Answer: A
The security analyst should use A. nmap to help identify if the traffic is being blocked. Nmap can be used to scan ports, look for open services, check for firewalls and even detect OS information. It can also help identify any packet filtering rules that are blocking traffic between two devices.
upvoted 1 times
...
ganymede
2 years, 3 months ago
Selected Answer: A
A nmap
upvoted 1 times
...
RvR109
2 years, 3 months ago
Selected Answer: A
Should be nmap
upvoted 2 times
...
brewoz404sd
2 years, 3 months ago
Selected Answer: A
NMAP, tracert doesn't make any sense, we already know icmp traffic works.
upvoted 7 times
...
Zeeeellll
2 years, 4 months ago
Selected Answer: A
Answer:Nmap help identify if traffic is being blocked between two devices.
upvoted 4 times
...
MaryKey
2 years, 4 months ago
tracert is based on ICMP, hence the suggested answer makes no sense.
upvoted 4 times
Ranaer
2 years, 3 months ago
Never, ever consider the suggested answer. People who decide what is correct on the website have no idea what they are doing. Always do your own research and reach a conclusion or use the discussion below the question, if one is available.
upvoted 5 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...