CompTIA
CAS-002 · Question #169
CAS-002 Question #169: Real Exam Question with Answer & Explanation
The correct answer is D: Moving the HBA. LUN masking restricts LUN access based on Host Bus Adapter identity, so physically moving an HBA to a different host grants that host unintended access to the masked LUN.
Question
A process allows a LUN to be available to some hosts and unavailable to others. Which of the following causes such a process to become vulnerable?
Options
- ALUN masking
- BData injection
- CData fragmentation
- DMoving the HBA
Explanation
LUN masking restricts LUN access based on Host Bus Adapter identity, so physically moving an HBA to a different host grants that host unintended access to the masked LUN.
Common mistakes.
- A. LUN masking is the name of the access control process being described in the question - it is the mechanism being circumvented, not the cause of the vulnerability.
- B. Data injection refers to inserting malicious data into a data stream or storage system and has no relation to the physical relocation of an HBA or LUN access control bypass.
- C. Data fragmentation describes how data is distributed across non-contiguous storage blocks and has no relationship to HBA-based LUN masking or the resulting access control vulnerability.
Concept tested. LUN masking vulnerability via HBA physical relocation
Reference. https://www.snia.org/education/storage_networking_primer/san/lun_masking
Community Discussion
No community discussion yet for this question.