Soru

Zorluk: OrtaMitigation Strategies and Enterprise Hardening Practices

A security audit of an organization's internal infrastructure reveals two major compliance failures: administrative credentials and configuration data are being transmitted in cleartext across management subnets, and active administrative sessions on management consoles remain authenticated indefinitely without user activity. Which of the following enterprise hardening practices should the security team implement to directly address these findings? (Select TWO.)

  1. Disable unencrypted management protocols such as HTTP, Telnet, and SNMPv1/v2 in favor of encrypted alternatives like HTTPS and SSHv2.Cevap
  2. Configure mandatory session timeouts and re-authentication requirements on all administrative web interfaces.Cevap
  3. C
    Deploy perimeter intrusion prevention systems (IPS) to detect cleartext administrative traffic entering the corporate network.
  4. D
    Implement production honeypots configured to inline filter cleartext management requests before reaching internal routers.

Cevap

Disabling unencrypted management protocols in favor of SSHv2/HTTPS and enforcing mandatory session timeouts on administrative interfaces directly mitigate cleartext credential exposure and persistent unmonitored administrative sessions.
Disabling legacy cleartext protocols (HTTP, Telnet, SNMPv1/v2) and replacing them with encrypted protocols ensures confidentiality of credentials in transit. Implementing session timeouts ensures inactive administrative web sessions are closed, mitigating unauthorized access to unattended sessions.

Adım Adım Çözüm

1
Identify the primary security vulnerabilities presented in the audit finding.
Vulnerability 1: Cleartext transmission of administrative credentials/data. Vulnerability 2: Indefinite persistent administrative sessions.
Hardening measures must target the specific technical weaknesses identified in the assessment.
2
Evaluate technical controls for cleartext management protocol exposure.
Replacing legacy protocols (HTTP, Telnet, SNMPv1/v2) with secure, encrypted management protocols (HTTPS, SSHv2, SNMPv3) prevents eavesdropping and credential harvesting.
Host and service hardening requires securing data in transit using cryptographic protocols.
3
Evaluate technical controls for indefinite administrative session duration.
Enforcing automated idle session timeouts forces session termination after inactivity.
Session management hardening reduces the window of opportunity for session hijacking and physical unauthorized console access.

Anahtar Kavram

Enterprise Hardening and Secure Service Management
Tahmini Süre:1m 30s
Bu soruyu puanla