nerdexam
CompTIA

CAS-001 · Question #473

During a recent audit of servers, a company discovered that a network administrator, who required remote access, had deployed an unauthorized remote access application that communicated over common…

The correct answer is C. Implement SSL VPN with SAML standards for federation. Implementing an SSL VPN with SAML standards for federation is the most appropriate solution. The core problem is that a network administrator deployed an unauthorized, unmanaged remote access tool. The correct response is to replace it with a properly sanctioned…

Technical Integration of Enterprise Components

Question

During a recent audit of servers, a company discovered that a network administrator, who required remote access, had deployed an unauthorized remote access application that communicated over common ports already allowed through the firewall. A network scan showed that this remote access application had already been installed on one third of the servers in the company. Which of the following is the MOST appropriate action that the company should take to provide a more appropriate solution?

Options

  • AImplement an IPS to block the application on the network
  • BImplement the remote application out to the rest of the servers
  • CImplement SSL VPN with SAML standards for federation
  • DImplement an ACL on the firewall with NAT for remote access

How the community answered

(47 responses)
  • A
    4% (2)
  • B
    2% (1)
  • C
    85% (40)
  • D
    9% (4)

Explanation

Implementing an SSL VPN with SAML standards for federation is the most appropriate solution. The core problem is that a network administrator deployed an unauthorized, unmanaged remote access tool. The correct response is to replace it with a properly sanctioned, enterprise-grade solution. SSL VPN provides encrypted, authenticated remote access. SAML-based federation allows integration with the company's identity provider, ensuring centralized authentication, auditing, and access control. Option A (IPS to block the application) is reactive and may also block legitimate traffic on those same common ports. Option B (rolling out the unauthorized app to all servers) normalizes an unvetted, unmanaged application - a security risk. Option D (ACL with NAT) provides connectivity but not the authentication, encryption, and identity federation that a proper remote access solution requires.

Topics

#remote access#SSL VPN#SAML federation#unauthorized software

Community Discussion

No community discussion yet for this question.

Full CAS-001 Practice