300-320 · Question #726
Which type of server do you use to execute a vulnerability assessment against a host when designing a NAC?
The correct answer is B. Audit. 00aecd80417226.pdf AAA Server (Authentication, Authorization and Accounting Server)--The central policy server that aggregates one or more authentications and/or authorizations into a single system authorization decision and maps this decision to a network access profile for…
Question
Which type of server do you use to execute a vulnerability assessment against a host when designing a NAC?
Options
- ARemediation
- BAudit
- CAAA
- DPVS
How the community answered
(40 responses)- A5% (2)
- B90% (36)
- C3% (1)
- D3% (1)
Explanation
00aecd80417226.pdf AAA Server (Authentication, Authorization and Accounting Server)--The central policy server that aggregates one or more authentications and/or authorizations into a single system authorization decision and maps this decision to a network access profile for enforcement by the NAD. Cisco Secure Access Control Server (ACS) is Cisco's AAA server product that supports NAC Directory Server--A centralized directory server for performing user and/or machine authentication. Possible directory services include Lightweight Directory Access Protocol (LDAP), Microsoft Active Directory (AD), Novell Directory Services (NDS), and one-time token password Posture Validation Server (PVS)--A posture validation server from one or more third parties acts as an application-specific policy decision point in NAC for authorizing a set of posture credentials from one or more posture plugins against a set of policy rules. Examples include anti-virus servers or security application servers. Remediation Server--A management solution used to bring non-compliant hosts into compliance. This could be a specialized patch management application or as simple as a web site for distributing software. The better and more efficient your host patching and remediation is, the less Audit Server--A server or software that performs vulnerability assessment (VA) against a host to determine the level of compliance or risk of the host prior to network admission
Topics
Community Discussion
No community discussion yet for this question.