EC-Council
EC0-350 · Question #145
The SNMP Read-Only Community String is like a password. The string is sent along with each SNMP Get-Request and allows (or denies) access to a device. Most network vendors ship their equipment with…
The correct answer is A. Enable SNMPv3 which encrypts username/password authentication C. Enable IP filtering to limit access to SNMP device. See the full explanation below for the reasoning.
Question
The SNMP Read-Only Community String is like a password. The string is sent along with each SNMP Get-Request and allows (or denies) access to a device. Most network vendors ship their equipment with a default password of "public". This is the so-called "default public community string". How would you keep intruders from getting sensitive information regarding the network devices using SNMP? (Select 2 answers)
Options
- AEnable SNMPv3 which encrypts username/password authentication
- BUse your company name as the public community string replacing the default 'public'
- CEnable IP filtering to limit access to SNMP device
- DThe default configuration provided by device vendors is highly secure and you don't need to change
How the community answered
(45 responses)- A71% (32)
- B9% (4)
- D20% (9)
Community Discussion
No community discussion yet for this question.