Soru

Zorluk: OrtaNetwork Logging and Auditing

An administrator is auditing an enterprise network's device monitoring architecture to satisfy compliance guidelines. The policy mandates that all SNMP telemetry and event notifications transmitted between network switches and the central management station must enforce both sender identity verification and full packet payload encryption. Which of the following SNMPv3 security levels must be configured on the devices to meet these audit requirements?

  1. authPrivCevap
  2. B
    authNoPriv
  3. C
    noAuthNoPriv
  4. D
    SNMPv2c community strings

Cevap

The correct option is authPriv, as it provides both user authentication and data encryption for SNMPv3 management traffic.
The authPriv (Authentication and Privacy) security level in SNMPv3 uses cryptographic hashing for identity verification and symmetric encryption (such as AES) to ensure data confidentiality, fulfilling both requirements of the audit policy.

Adım Adım Çözüm

1
Analyze the security audit compliance requirements.
The requirements demand sender authentication (identity verification) and packet privacy (payload encryption).
Auditing standards mandate protecting network management telemetry against unauthorized tampering and eavesdropping.
2
Evaluate SNMPv3 User-based Security Model (USM) levels.
noAuthNoPriv offers no authentication or encryption; authNoPriv offers authentication without encryption; authPriv offers both authentication and encryption.
SNMPv3 defines three security modes with escalating cryptographic protection levels.
3
Select the security level matching both audit criteria.
authPriv satisfies both identity verification and encryption requirements.
It is the only SNMP level that combines HMAC authentication hashing with AES encryption.

Anahtar Kavram

SNMPv3 Security Levels (noAuthNoPriv, authNoPriv, authPriv)
Bu soruyu puanla