GSLC · Question #520
You work as the Network Administrator for a company that does a large amount of defense contract business. A high level of security, particularly regarding sensitive documents, is required. Which of…
The correct answer is B. Ensure that the printers hard drive is scanned for spyware. C. Secure all remote administrative protocols such as telnet. Securing network printers in a high-security environment requires scanning printer hard drives for stored sensitive data and locking down remote management protocols that could expose the device to unauthorized access.
Question
You work as the Network Administrator for a company that does a large amount of defense contract business. A high level of security, particularly regarding sensitive documents, is required. Which of the following are the steps you should take to secure network printers? Each correct answer represents a complete solution. Choose two.
Options
- ARemove the printers from the network and do not allow remote printing.
- BEnsure that the printers hard drive is scanned for spyware.
- CSecure all remote administrative protocols such as telnet.
- DDo not allow duplicate print jobs.
- ELimit the size of print jobs on the printer.
How the community answered
(42 responses)- A7% (3)
- B86% (36)
- D2% (1)
- E5% (2)
Why each option
Securing network printers in a high-security environment requires scanning printer hard drives for stored sensitive data and locking down remote management protocols that could expose the device to unauthorized access.
Physically removing printers from the network is an extreme measure that eliminates functionality without providing a balanced security control, and is not a recognized best practice for printer hardening.
Modern network printers contain hard drives that cache or permanently store print jobs, meaning sensitive defense documents could be retrieved from the device; scanning for spyware and wiping stored data directly addresses this data-at-rest risk.
Printers support remote management via protocols such as Telnet and HTTP which transmit credentials and commands in cleartext; securing or disabling these protocols prevents attackers from remotely reconfiguring the printer or intercepting sensitive print data in transit.
Disallowing duplicate print jobs is a workflow or cost-management policy and does not address any security vulnerability related to protecting sensitive documents.
Limiting print job size is a resource management control and provides no protection against interception, unauthorized access, or data leakage of sensitive documents.
Concept tested: Network printer hardening for sensitive environments
Source: https://www.cisa.gov/sites/default/files/publications/Securing_Network_Infrastructure_Devices_S508C.pdf
Topics
Community Discussion
No community discussion yet for this question.