H12-811_V1.0 · Question #829
Following a failure of services in the network, an administrator discovered that the configuration in one of the enterprise routers had been changed. What actions can be taken by the administrator…
The correct answer is A. The administrator should configure an ACL to allow only the administrator to manage the router. D. The administrator should configure AAA to manage user authorization on the router. To prevent unauthorized changes to the router's configuration, the administrator can take several steps. Configuring an ACL to restrict management access ensures that only authorized users, such as the administrator, can log in to the router. Additionally, using AAA…
Question
Following a failure of services in the network, an administrator discovered that the configuration in one of the enterprise routers had been changed. What actions can be taken by the administrator to prevent further changes?
Options
- AThe administrator should configure an ACL to allow only the administrator to manage the router.
- BThe administrator should configure port-security on the router.
- CThe administrator should limit access by setting the login privilege of users to level 0.
- DThe administrator should configure AAA to manage user authorization on the router.
How the community answered
(58 responses)- A83% (48)
- B5% (3)
- C12% (7)
Explanation
To prevent unauthorized changes to the router's configuration, the administrator can take several steps. Configuring an ACL to restrict management access ensures that only authorized users, such as the administrator, can log in to the router. Additionally, using AAA (Authentication, Authorization, and Accounting) allows the administrator to manage user permissions and control access to the router's functions based on user roles. Port-security is used for limiting MAC addresses on switch ports, and login privilege levels should be set appropriately but not limited to level 0, which restricts almost all actions.
Topics
Community Discussion
No community discussion yet for this question.