nerdexam
EC-Council

312-50V7 · Question #93

The SNMP Read-Only Community String is like a password. The string is sent along with each SNMP Get-Request and allows (or denies) access to a device. Most network vendors ship their equipment with…

The correct answer is A. Enable SNMPv3 which encrypts username/password authentication C. Enable IP filtering to limit access to SNMP device. See the full explanation below for the reasoning.

Question

The SNMP Read-Only Community String is like a password. The string is sent along with each SNMP Get-Request and allows (or denies) access to a device. Most network vendors ship their equipment with a default password of "public". This is the so-called "default public community string". How would you keep intruders from getting sensitive information regarding the network devices using SNMP? (Select 2 answers)

Options

  • AEnable SNMPv3 which encrypts username/password authentication
  • BUse your company name as the public community string replacing the default 'public'
  • CEnable IP filtering to limit access to SNMP device
  • DThe default configuration provided by device vendors is highly secure and you don't need to change anything

How the community answered

(36 responses)
  • A
    83% (30)
  • B
    11% (4)
  • D
    6% (2)

Community Discussion

No community discussion yet for this question.

Full 312-50V7 Practice