CompTIACompTIA
CAS-005 · Question #462
CAS-005 Question #462: Real Exam Question with Answer & Explanation
The correct answer is C: Authentication is not allocated.. Original DNP3 lacks built-in authentication for its messages, making it vulnerable to spoofing and replay attacks. Secure extensions (Secure DNP3) add cryptographic authentication, but legacy deployments without these extensions remain at risk.
Submitted by salim_om· Mar 6, 2026Security Engineering
Question
Which of the following is a security concern for DNP3?
Options
- AFree-form messages require support.
- BAvailable function codes are not standardized.
- CAuthentication is not allocated.
- DIt is an open source protocol.
Explanation
Original DNP3 lacks built-in authentication for its messages, making it vulnerable to spoofing and replay attacks. Secure extensions (Secure DNP3) add cryptographic authentication, but legacy deployments without these extensions remain at risk.
Community Discussion
No community discussion yet for this question.