Soru

Zorluk: OrtaNetwork Performance Monitoring and Metrics

An organization's security policy mandates that all telemetry and network performance monitoring data collected from core routers must be protected against eavesdropping and data tampering. When configuring SNMPv3 monitoring agents on these devices, which security level must be enabled to provide both cryptographic authentication and data payload encryption?

  1. authPrivCevap
  2. B
    authNoPriv
  3. C
    noAuthNoPriv
  4. D
    communityNoPriv

Cevap

The authPriv security level is required because it implements both user authentication and packet payload encryption.
The authPriv (Authentication with Privacy) security level in SNMPv3 provides HMAC cryptographic authentication to verify packet integrity and sender identity, alongside symmetric key encryption (such as AES) to secure the payload content from unauthorized interception.

Adım Adım Çözüm

1
Identify the security requirements stated in the scenario.
The scenario requires protection against both unauthorized tampering (authentication) and eavesdropping (encryption/privacy).
Security mandates for sensitive performance management traffic require confidential and authentic telemetry transmission.
2
Evaluate SNMPv3 security model parameters.
SNMPv3 defines three primary security levels: noAuthNoPriv, authNoPriv, and authPriv.
Understanding the distinction between authentication (auth) and privacy/encryption (priv) determines the correct protocol configuration.
3
Select the SNMPv3 level meeting both criteria.
authPriv satisfies both requirements by combining HMAC authentication with symmetric cipher encryption (AES/DES).
Only authPriv enables full payload encryption alongside user identity verification.

Anahtar Kavram

SNMPv3 Security Levels
Tahmini Süre:1m 0s
Bu soruyu puanla