300-710 · Question #251
300-710 Question #251: Real Exam Question with Answer & Explanation
The correct answer is D: TOR. TOR (The Onion Router) is an anonymity network often used to bypass security controls and hide user activity, making its detection in a Network Risk Report a strong indicator of unauthorized network use requiring immediate action.
Question
Refer to the exhibit. An engineer is analyzing a Network Risk Report from Cisco FMC. Which application must the engineer take immediate action against to prevent unauthorized network use?
Options
- AKerberos
- BYouTube
- CChrome
- DTOR
Explanation
TOR (The Onion Router) is an anonymity network often used to bypass security controls and hide user activity, making its detection in a Network Risk Report a strong indicator of unauthorized network use requiring immediate action.
Common mistakes.
- A. Kerberos is a legitimate and widely used network authentication protocol essential for securing many enterprise services, and blocking it would severely disrupt authorized network operations.
- B. YouTube is a legitimate video-sharing platform, and while it might be blocked for productivity reasons, it does not inherently represent "unauthorized network use" or a security threat in the same way as an anonymity network.
- C. Chrome is a standard web browser, a fundamental tool for network access. Blocking it would prevent all legitimate web-based network use, not just unauthorized activity.
Concept tested. Identifying high-risk applications
Reference. https://www.cisco.com/c/en/us/products/security/firewalls/what-is-tor.html
Topics
Community Discussion
No community discussion yet for this question.