Cisco
600-199 · Question #7
Given a Linux machine running only an SSH server, which chain of alarms would be most concerning?
The correct answer is A. brute force login attempt from outside of the network, followed by an internal network scan. See the full explanation below for the reasoning.
Question
Given a Linux machine running only an SSH server, which chain of alarms would be most concerning?
Options
- Abrute force login attempt from outside of the network, followed by an internal network scan
- Broot login attempt followed by brute force login attempt
- CMicrosoft RPC attack against the server
- Dmultiple rapid login attempts
How the community answered
(30 responses)- A73% (22)
- B3% (1)
- C7% (2)
- D17% (5)
Community Discussion
No community discussion yet for this question.