A network technician is tasked with hardening print infrastructure for a financial firm. The requirement dictates that all print jobs sent from client workstations to a newly deployed multifunction device (MFD) must be fully encrypted in transit across subnets using IPPS (Internet Printing Protocol Secure). The technician installs an enterprise-issued SSL/TLS certificate onto the MFD. However, when users attempt to print over IPPS, the print spooler reports a certificate trust error and drops the job. Which of the following configuration actions should the technician perform to successfully enable encrypted printing without lowering security requirements?
- Deploy the enterprise root CA certificate to the trusted root store on client workstations and verify TCP port 631 is open across network firewalls.Cevap
- BReconfigure the workstation printer port to use HTTP transport over TCP port 80 to bypass certificate revocation list checks.
- CRevert the MFD transport protocol configuration to LPR/LPD over TCP port 515 and enable IPsec tunneling on the local network switch.
- DChange client workstation network addresses to APIPA assignments to bypass domain security certificate validation policies.
Cevap
Deploy the enterprise root CA certificate to the trusted root store on client workstations and verify TCP port 631 is open across network firewalls.
The correct answer addresses the root cause of the SSL/TLS trust failure. IPPS (Internet Printing Protocol Secure) uses encryption over TCP port 631. For clients to validate the server certificate installed on the MFD, the root certificate of the issuing Certificate Authority (CA) must be present in the client workstation's Trusted Root Certification Authorities store.
Adım Adım Çözüm
Anahtar Kavram
IPPS Configuration and TLS Certificate Trust Verification
Tahmini Süre:2m 0s