QuestionQ48

Vulnerability Management

A security analyst must block vulnerable ports and disable legacy protocols. The analyst has confirmed that the NetBIOS trio, Telnet, SMB, and TFTP have been blocked and/or disabled. Which additional protocol should the analyst block next?

Explanation

SNMPv1 relies on plaintext community strings and provides no robust authentication or encryption, making it a legacy protocol that should be blocked or replaced with SNMPv3. TLS 1.3, Kerberos v5, and LDAPS are intended to provide modern cryptographic protections.

Community Discussion

No comments yet. Be the first to start the discussion!