CompTIA
220-802 · Question #844
220-802 Question #844: Real Exam Question with Answer & Explanation
The correct answer is C: Change the default user name and password. The first and most critical step to securing any network device is changing the factory-set default credentials, which are publicly known and exploitable by anyone.
Question
A small library has an integrated switch and router that is not wireless. All of the public PCs in the library are connected to the device. Which of the following is the FIRST thing the library should do to deter curious patrons from interfering with the device?
Options
- AConfigure DNS to resolve externally rather than internally
- BEnable MAC filtering to permit public PCs
- CChange the default user name and password
- DSet up the DHCP server to use a different gateway option
Explanation
The first and most critical step to securing any network device is changing the factory-set default credentials, which are publicly known and exploitable by anyone.
Common mistakes.
- A. Configuring DNS for external resolution affects name resolution behavior but does nothing to prevent access to the device's management interface.
- B. MAC filtering controls which client devices can connect to the network, not who can log into the router/switch administration console.
- D. Changing the DHCP gateway option affects client network routing but does not restrict access to the device itself.
Concept tested. Default credential hardening for network devices
Reference. https://www.cisco.com/c/en/us/support/docs/ip/access-lists/13608-21.html
Community Discussion
No community discussion yet for this question.