CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 42: PT0-002: CompTIA PenTest+ Certification Exam

A penetration tester recently completed a review of the security of a core network device within a corporate environment. The key findings are as follows: ✑ The following request was intercepted going to the network device:GET /login HTTP/1.1 -Host: 10.50.100.16 -User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0)Gec…

Nội dung câu hỏi

A penetration tester recently completed a review of the security of a core network device within a corporate environment. The key findings are as follows: ✑ The following request was intercepted going to the network device:GET /login HTTP/1.1 -Host: 10.50.100.16 -User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0)Gecko/20100101 Firefox/31.0 -Accept-Language: en-US,en;q=0.5 -Connection: keep-alive -Authorization: Basic WU9VUilOQU1FOnNlY3JldHBhc3N3b3jk ✑ Network management interfaces are available on the production network. ✑ An Nmap scan retuned the following:Port State Service Version22/tcp open ssh Cisco SSH 1.25 (protocol 2.080/tcp open http Cisco IOS http config|_https-title: Did not follow redirect to https://10.50.100.16443/tcp open https Cisco IOS https configWhich of the following would be BEST to add to the recommendations section of the final report? (Choose two.)

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Enforce enhanced password complexity requirements.
  2. B. Disable or upgrade SSH daemon.
  3. C. Disable HTTP/301 redirect configuration.
  4. D. Create an out-of-band network for management. — đáp án hiện tại
  5. E. Implement a better method for authentication. — đáp án hiện tại
  6. F. Eliminate network management and control interfaces.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề