Soru

Zorluk: OrtaNetworking Ports and Protocols

A security technician is configuring firewall access control lists (ACLs) to secure directory authentication queries between remote branch offices and a central domain controller. Company policy mandates that all directory queries over the WAN must be encrypted using SSL/TLS. Which of the following port and protocol combinations must be permitted through the firewall to meet this requirement?

  1. TCP port 636 for LDAPSCevap
  2. B
    TCP port 389 for LDAP
  3. C
    UDP port 53 for DNS
  4. D
    TCP port 443 for HTTPS

Cevap

TCP port 636 for LDAPS is required to secure directory queries with SSL/TLS encryption.
LDAPS (Lightweight Directory Access Protocol Secure) encrypts directory service traffic over SSL/TLS and listens on standard TCP port 636.

Adım Adım Çözüm

1
Identify the requested network service and security constraint.
The requirement specifies directory queries/authentication secured with SSL/TLS encryption.
Lightweight Directory Access Protocol (LDAP) manages directory services, while the secure variant (LDAPS) incorporates SSL/TLS.
2
Determine the default port assignment for the secure protocol variant.
Standard unencrypted LDAP uses TCP port 389, whereas encrypted LDAPS uses TCP port 636.
Firewall ACL rules must explicitly target TCP port 636 to allow encrypted directory queries to pass between remote offices and the domain controller.

Anahtar Kavram

Port assignments for directory authentication protocols (LDAP port 389 vs LDAPS port 636)
Bu soruyu puanla