nerdexam
CompTIA

CAS-002 · Question #234

A security administrator is tasked with securing a company's headquarters and branch offices move to unified communications. The Chief Information Officer (CIO) wants to integrate the corporate…

The correct answer is A. Create presence groups, restrict IM protocols to the internal networks, encrypt remote. Securing unified communications requires presence privacy groups, restricted IM to internal networks, and encryption for remote sessions to protect all integrated communication channels.

Technical Integration of Enterprise Components

Question

A security administrator is tasked with securing a company's headquarters and branch offices move to unified communications. The Chief Information Officer (CIO) wants to integrate the corporate users' email, voice mail, telephony, presence and corporate messaging to internal computers, mobile users, and devices. Which of the following actions would BEST meet the CIO's goals while providing maximum unified communications security?

Options

  • ACreate presence groups, restrict IM protocols to the internal networks, encrypt remote
  • BEnable discretionary email forwarding restrictions, utilize QoS and Secure RTP, allow
  • CSet presence to invisible by default, restrict IM to invite only, implement QoS on SIP and
  • DEstablish presence privacy groups, restrict all IM protocols, allow secure RTP on session

How the community answered

(44 responses)
  • A
    70% (31)
  • B
    5% (2)
  • C
    18% (8)
  • D
    7% (3)

Why each option

Securing unified communications requires presence privacy groups, restricted IM to internal networks, and encryption for remote sessions to protect all integrated communication channels.

ACreate presence groups, restrict IM protocols to the internal networks, encrypt remoteCorrect

Creating presence groups restricts visibility of user availability to authorized parties, restricting IM protocols to internal networks prevents data leakage over untrusted paths, and encrypting remote communications via mechanisms such as TLS and SRTP ensures confidentiality for mobile and external users - together these address the full spectrum of UC security requirements without sacrificing functionality.

BEnable discretionary email forwarding restrictions, utilize QoS and Secure RTP, allow

Discretionary email forwarding restrictions are user-controlled and inconsistently applied, creating an unreliable security posture that does not meet enterprise-grade requirements.

CSet presence to invisible by default, restrict IM to invite only, implement QoS on SIP and

Setting presence to invisible by default undermines the core value of unified communications, as real-time presence awareness is a primary feature the CIO specifically wants to enable.

DEstablish presence privacy groups, restrict all IM protocols, allow secure RTP on session

Restricting all IM protocols defeats the purpose of unified communications integration and directly contradicts the CIO's goal of enabling corporate messaging across the enterprise.

Concept tested: Unified communications security controls and encryption

Source: https://www.cisco.com/c/en/us/td/docs/voice_ip_comm/cucm/security/12_5_1/cucm_b_security-guide-1251.html

Topics

#unified communications#SIP#secure RTP#presence management

Community Discussion

No community discussion yet for this question.

Full CAS-002 Practice