Soru

Zorluk: KolayNetwork Logging and Auditing

A network administrator needs to configure centralized log collection for core enterprise switches. Security policies require that all log messages sent across the network must be encrypted in transit. Which protocol and port combination should the administrator configure to securely transport Syslog data?

  1. Syslog over TLS on TCP port 6514Cevap
  2. B
    Standard Syslog on UDP port 514
  3. C
    SNMPv2c traps on UDP port 161
  4. D
    Secure Syslog on TCP port 22

Cevap

Syslog over TLS on TCP port 6514
The option specifying Syslog over TLS on TCP port 6514 correctly identifies the industry-standard protocol (RFC 5425) and port assignment for sending centralized, encrypted log messages across network infrastructure.

Adım Adım Çözüm

1
Identify the logging transport requirement
The requirement specifies encrypted transmission of log messages to a central server.
Security compliance requires confidentiality in transit.
2
Select the secure version of the Syslog protocol
Syslog over TLS (RFC 5425) provides encryption and authentication.
Standard Syslog over UDP port 514 operates in plain text without encryption.
3
Verify standard port assignments
Syslog over TLS standard destination port is TCP 6514.
IANA assigns TCP port 6514 specifically for secure Syslog message delivery.

Anahtar Kavram

Secure Syslog (TLS) Port and Protocol Identification
Tahmini Süre:45s
Bu soruyu puanla