Soru

Zorluk: OrtaPatch Management and Software Maintenance

A network operations team needs to remediate a high-severity vulnerability disclosed in the operating system of the organization's core network switches. Place the standard patch management lifecycle steps in the correct chronological order from first to last.

  1. 1Perform vulnerability scanning and audit device inventory to identify all vulnerable core switch models and firmware versions.
  2. 2Apply the software patch to non-production switches in an isolated lab environment to test stability and verify software checksums.
  3. 3Submit a formal change request detailing deployment impact, maintenance window schedules, and a tested rollback plan to the Change Advisory Board.
  4. 4Deploy the firmware update across production core switches during the approved maintenance window using a staggered rollout strategy.
  5. 5Verify network connectivity, review switch log files, and archive the updated post-patch baseline configuration.

Cevap

The correct chronological sequence for the patch management lifecycle is: 1) Identify vulnerable assets and scan inventory, 2) Test the patch in an isolated lab environment, 3) Submit a change request with a rollback plan to the Change Advisory Board, 4) Deploy the firmware update during the approved maintenance window, and 5) Verify post-patch operation and update baseline documentation.
The correct sequence follows industry-standard patch management governance: discovering vulnerable inventory, validating patches in sandbox environments, gaining Change Advisory Board authorization with rollback strategies, executing the update during scheduled maintenance, and completing post-deployment auditing and baselining.

Adım Adım Çözüm

1
Identify affected assets
Quantified affected switch inventory and current firmware versions.
Before testing or scheduling maintenance, administrators must determine the precise scope of vulnerable devices.
2
Validate patch in lab environment
Verified patch stability and cryptographically verified file integrity.
Staging in an isolated lab prevents introducing software bugs or system instability into live operations.
3
Obtain Change Advisory Board (CAB) authorization
Approved maintenance window, risk assessment, and contingency rollback plan.
Formal change control minimizes unannounced downtime and ensures leadership oversight.
4
Execute maintenance window deployment
Firmware successfully updated on production switch infrastructure.
Live modifications must occur strictly within designated maintenance windows following validation.
5
Perform post-deployment verification and auditing
Confirmed stable traffic flow, checked error logs, and saved new configuration baseline.
Auditing confirms successful remediation, while updated baseline documentation ensures ongoing operational accuracy.

Anahtar Kavram

Standard Network Patch Management Lifecycle
Bu soruyu puanla