Symantec
850-001 · Question #61
A company has deployed its web infrastructure in a public cloud and its email infrastructure in a private cloud. The company needs to deploy hosted DLP Network Prevent servers to monitor web and…
The correct answer is A. A rogue Enforce server may be loaded with certificates and used for a man-in-the-middle attack. See the full explanation below for the reasoning.
Question
A company has deployed its web infrastructure in a public cloud and its email infrastructure in a private cloud. The company needs to deploy hosted DLP Network Prevent servers to monitor web and email traffic. The company deploys the solution using the default installed certificates. Which risk is associated with this scenario?
Options
- AA rogue Enforce server may be loaded with certificates and used for a man-in-the-middle attack.
- BA trusted insider may corrupt the certificates through the use of the SSLKeyTool and thereby
- CKnowing the file size and access attributes, a malicious adversary may delete the certificates
- DThe Enforce server will be unable to differentiate communications between the network prevent
How the community answered
(50 responses)- A84% (42)
- B10% (5)
- C2% (1)
- D4% (2)
Community Discussion
No community discussion yet for this question.