Soru

Zorluk: OrtaVirtualization Security Considerations and Network Configurations

An IT technician is building a multi-VM malware sandbox on a local workstation hypervisor. The guest virtual machines must be able to communicate with each other to test network-based malware propagation, but they must be completely isolated from both the host operating system and the physical corporate network. Additionally, the technician must minimize the risk of host compromise due to VM escape vulnerabilities. Which TWO of the following configurations or security practices should the technician implement to satisfy these requirements? (Select TWO)

  1. Configure the guest virtual machine network adapters to use Internal (Private) virtual networking mode.Cevap
  2. Regularly update and apply vendor security patches to the host hypervisor software.Cevap
  3. C
    Configure the guest virtual machine network adapters to use Bridged networking mode to isolate traffic to a virtual switch.
  4. D
    Rely on APIPA address assignment (169.254.x.x) under NAT mode to prevent outbound network communication.

Cevap

The technician should configure the virtual machine network adapters to use Internal (Private) virtual networking mode and keep the host hypervisor patched and updated.
Internal (Private) networking mode restricts network traffic solely to virtual machines connected to that specific virtual switch on the host, ensuring total isolation from the host OS and external physical network. Applying regular hypervisor software updates addresses known exploits, preventing guest VMs from breaking out of host-enforced memory boundaries (VM escape).

Adım Adım Çözüm

1
Analyze network isolation requirements.
Identify that Internal (Private) networking mode enables inter-VM communication while preventing traffic from reaching the host OS or physical network adapters.
Bridged and NAT modes expose the external network or host routing engine to potential malware traffic.
2
Evaluate hypervisor security hardening requirements.
Identify hypervisor patching as the primary mitigation strategy against VM escape attacks.
VM escape attacks target flaws in hypervisor code to gain unauthorized command execution on the host machine.

Anahtar Kavram

Virtualization Security Considerations and Network Configurations
Bu soruyu puanla