nerdexam
Cisco

600-199 · Question #7

Given a Linux machine running only an SSH server, which chain of alarms would be most concerning?

The correct answer is A. brute force login attempt from outside of the network, followed by an internal network scan. See the full explanation below for the reasoning.

Question

Given a Linux machine running only an SSH server, which chain of alarms would be most concerning?

Options

  • Abrute force login attempt from outside of the network, followed by an internal network scan
  • Broot login attempt followed by brute force login attempt
  • CMicrosoft RPC attack against the server
  • Dmultiple rapid login attempts

How the community answered

(30 responses)
  • A
    73% (22)
  • B
    3% (1)
  • C
    7% (2)
  • D
    17% (5)

Community Discussion

No community discussion yet for this question.

Full 600-199 Practice