首页
外语
计算机
考研
公务员
职业资格
财经
工程
司法
医学
专升本
自考
实用职业技能
登录
计算机
Bob is a new security administrator at a financial institution. The organization has experienced some suspicious activity on one
Bob is a new security administrator at a financial institution. The organization has experienced some suspicious activity on one
admin
2013-12-19
64
问题
Bob is a new security administrator at a financial institution. The organization has experienced some suspicious activity on one of the critical servers that contain customer data. When reviewing how the systems are administered, he uncovers some concerning issues pertaining to remote administration. Which of the following should not be put into place to reduce these concerns?
i. Commands and data should not be sent in cleartext.
ii. SSH should be used, not Telnet.
iii. Truly critical systems should be administered locally instead of remotely.
iv. Only a small number of administrators should be able to carry out remote functionality.
v. Strong authentication should be in place for any administration activities.
选项
A、i, ii
B、None of them
C、ii, iv
D、All of them
答案
B
解析
B正确。为了正确地进行远程管理活动,所有这些对策都应该付诸实施。
A不正确。因为敏感命令和敏感数据不应该以明文的形式(即它们需要加密)发送到关键系统。例如,应该使用SSH,而不是Telnet。SSH是一个安全数据通信的网络协议。它允许两个网络相连的系统间的远程shell服务和命令执行,以及其他安全网络服务。它是为了取代使用明文发送信息和明显的密码的Telnet和其他不安全的远程shell协议(比如Berkeley rsh和rexec协议)而设计的,因为这些不安全的协议会导致信息容易受到拦截和泄露。
C不正确。因为敏感命令和敏感数据不应该以明文(即它们需要加密)的形式发送。例如,应该使用SSH,而不是Telnet。真正关键的系统应该通过本地管理,而不是通过远程管理。应该只有一小部分管理可以通过远程执行。
D不正确。因为为了正确地进行远程管理活动,所有这些对策都应该付诸实施。
转载请注明原文地址:https://kaotiyun.com/show/cAhZ777K
0
CISSP认证
相关试题推荐
AsformercolonistsofGreatBritain,theFoundingFathersoftheUnitedStatesadoptedmuchofthelegalsystemofGreatBritai
AsformercolonistsofGreatBritain,theFoundingFathersoftheUnitedStatesadoptedmuchofthelegalsystemofGreatBritai
Historically,humansgetseriousaboutavoidingdisastersonlyafteronehasjuststruckthem.【C1】______thatlogic,2006shoul
Individualsandbusinesseshavelegalprotectionforintellectualpropertytheycreateandown.Intellectualproper【C1】______fro
[A]Thefirststepinpreparingamarketingplanisthatofproducingtheinformationnecessaryfordecision-making.Usually,a
[A]Thefirststepinpreparingamarketingplanisthatofproducingtheinformationnecessaryfordecision-making.Usually,a
Severaltypesoffinancialriskareencounteredininternationalmarketing;themajorproblemsincludecommercial,political,an
School-agechildrenshouldparticipatein60minutesormoreofmoderatetovigorousphysicalactivitydaily,accordingtoanex
[A]Developmentwelcomedbycityplanners[B]Reduceddemandsonspaceandenergy[C]Plansforfuturehomes[D]Worldwideexamp
Writeanessayof160-200wordsbasedonthefollowingpictures.Inyouressay,youshould1)describethepicturesbriefly,
随机试题
有关先天性膈膨升的描述错误的是
女性生殖器有哪些邻近器官?各与生殖器官的关系如何?
肝昏迷的患者禁用何种溶液灌肠()。
男性,45岁,右上腹持续性隐痛3个月,逐渐食欲缺乏,消瘦乏力,近1个月来稀便及黏液血便2~3次/天,贫血。检查:中腹部可扪及移动的肿块,血红蛋白80g/L,大便潜血试验(++)。首先考虑的是()
三绕组变压器数学模型中的电导反映变压器绕组的()。
经返工重做或更换器具、设备的检验批,应()。
在工程进度曲线中,将实际进度与计划进度进行比较,可以获得的信息是()。
关于网络计划关键线路的说法,正确的有()。
毛泽东曾指出“两篇文章,上篇与下篇,只有上篇做好,下篇才能做好。坚决地领导民主革命,是争取社会主义胜利的条件”,其中,“上篇”和“下篇”分别指()
Allthestudentsofthisuniversityhavefree______totheInternetviaabroadband.
最新回复
(
0
)