• Post author:
  • Post category:Blog
  • Reading time:2 mins read
  • Post last modified:June 12, 2024

Refer to the exhibit. The help desk receives a work order describing an issue with a management application running on PC-B. The work order states that the network management application cannot receive syslog messages from the LAN switch after upgrading PC-B to the latest version of Windows 10. A ping request from PC-A to PC-B fails, but both PCs are able to successfully ping the connected switch VLAN1 IP address. The technician temporarily disables the Windows Defender Firewall on PC-B for both the private and public networks. The ping request from PC-A to PC-B succeeds and the application on PC-B can receive the syslog messages from the switch. Which action should the technician perform to correct the reported issue without compromising the security of the LAN?

CCST Junior Cybersecurity Analyst Career Path Final Exam Answers 08
CCST Junior Cybersecurity Analyst Career Path Final Exam Answers 08
  • Disable the Windows Defender Firewall and install a third-party host-based intrusion detection system.
  • Create a rule using IPtables to permit syslog and ICMP traffic sourced from private addresses to enter PC-B.
  • Leave the Windows Defender Firewall on PC-B disabled for the private network and re-enable it for the public network only.
  • Re-enable the firewall for both networks and create a custom inbound rule on PC-B to permit the desired protocols.
Explanation & Hint:

To solve the issue without further compromising LAN security, a custom rule can be created in Windows Defender Firewall to permit the necessary protocols from the switch IP address. IPtables is a Linux firewall utility that is not available on Windows 10.

For more Questions and Answers:

CCST Junior Cybersecurity Analyst Career Path Final Exam Answers Full 100%

Subscribe
Notify of
guest
0 Comments
Newest
Oldest Most Voted
Inline Feedbacks
View all comments