nerdexam
EC-Council

EC0-350 · Question #145

The SNMP Read-Only Community String is like a password. The string is sent along with each SNMP Get-Request and allows (or denies) access to a device. Most network vendors ship their equipment with…

The correct answer is A. Enable SNMPv3 which encrypts username/password authentication C. Enable IP filtering to limit access to SNMP device. See the full explanation below for the reasoning.

Question

The SNMP Read-Only Community String is like a password. The string is sent along with each SNMP Get-Request and allows (or denies) access to a device. Most network vendors ship their equipment with a default password of "public". This is the so-called "default public community string". How would you keep intruders from getting sensitive information regarding the network devices using SNMP? (Select 2 answers)

Options

  • AEnable SNMPv3 which encrypts username/password authentication
  • BUse your company name as the public community string replacing the default 'public'
  • CEnable IP filtering to limit access to SNMP device
  • DThe default configuration provided by device vendors is highly secure and you don't need to change

How the community answered

(45 responses)
  • A
    71% (32)
  • B
    9% (4)
  • D
    20% (9)

Community Discussion

No community discussion yet for this question.

Full EC0-350 Practice