nerdexam
ExamsCAS-002Questions#803
CompTIA

CAS-002 · Question #803

CAS-002 Question #803: Real Exam Question with Answer & Explanation

The correct answer is A: A separate physical interface placed on a private VLAN should be configured for live host. VDI virtual machines can be migrated across physical hosts while the virtual machines are still powered on. In VMware, this is called vMotion. In Microsoft Hyper-V, this is called Live Migration. When a virtual machine is migrated between hosts, the data is unencrypted as it trav

Question

A security administrator is performing VDI traffic data collection on a virtual server which migrates from one host to another. While reviewing the data collected by the protocol analyzer, the security administrator notices that sensitive data is present in the packet capture. Which of the following should the security administrator recommend to ensure the confidentiality of sensitive information during live VM migration, while minimizing latency issues?

Options

  • AA separate physical interface placed on a private VLAN should be configured for live host
  • BDatabase record encryption should be used when storing sensitive information on virtual servers.
  • CFull disk encryption should be enabled across the enterprise to ensure the confidentiality of
  • DSensitive data should be stored on a backend SAN which uses an isolated fiber channel network.

Explanation

VDI virtual machines can be migrated across physical hosts while the virtual machines are still powered on. In VMware, this is called vMotion. In Microsoft Hyper-V, this is called Live Migration. When a virtual machine is migrated between hosts, the data is unencrypted as it travels across the network. To prevent access to the data as it travels across the network, a dedicated network should be created for virtual machine migrations. The dedicated migration network should only be accessible by the virtual machine hosts to maximize security.

Community Discussion

No community discussion yet for this question.

Full CAS-002 Practice