Soru

Zorluk: OrtaCommon Ports and Protocols

A network administrator is reconfiguring an enterprise application server to query an Active Directory domain controller using encrypted Lightweight Directory Access Protocol over SSL/TLS (LDAPS). The existing firewall rule permits standard unencrypted directory queries, but secure authentication attempts are currently being dropped. Which of the following port and transport protocol combinations must be permitted through the firewall to allow LDAPS communications?

  1. TCP port 636Cevap
  2. B
    UDP port 636
  3. C
    TCP port 389
  4. D
    TCP port 3268

Cevap

TCP port 636 is required to allow secure Lightweight Directory Access Protocol (LDAPS) traffic.
Lightweight Directory Access Protocol over SSL/TLS (LDAPS) uses TCP port 636 to secure directory query authentication via transport layer encryption.

Adım Adım Çözüm

1
Identify the target protocol and encryption requirement from the scenario.
The scenario requires Lightweight Directory Access Protocol over SSL/TLS (LDAPS).
Differentiating between cleartext and encrypted directory services is necessary to identify the proper destination port.
2
Determine the transport layer protocol requirement.
Establishing a TLS session requires reliable, stateful transmission provided by TCP.
TCP handles session setup and reliable delivery needed for cryptographic handshakes.
3
Match the protocol to its standardized default port number.
Standard LDAP operates over TCP port 389, while encrypted LDAPS uses TCP port 636.
Firewall rules must permit TCP port 636 to allow encrypted directory authentication.

Anahtar Kavram

Common Ports and Protocols - Secure Directory Services (LDAP vs LDAPS)
Bu soruyu puanla