nerdexam
Mile2_Security

ML0-320 · Question #223

Why is it so challenging to block packets from Remote Access Troans that use port 80 for network communications? Choose three.

The correct answer is A. To a firewall, the traffic appears simply to be from an internal user making an innoccous HTTP B. Port 80 outbound is normally open on corporate firewalls D. Not all firewalls are capable of inspecing data in the HTTP data fields for evidence of tunneling. See the full explanation below for the reasoning.

Question

Why is it so challenging to block packets from Remote Access Troans that use port 80 for network communications? Choose three.

Options

  • ATo a firewall, the traffic appears simply to be from an internal user making an innoccous HTTP
  • BPort 80 outbound is normally open on corporate firewalls
  • CStateful inspection firewalls will block unsolicited inbound HTTP GET requests
  • DNot all firewalls are capable of inspecing data in the HTTP data fields for evidence of tunneling

How the community answered

(46 responses)
  • A
    78% (36)
  • C
    22% (10)

Community Discussion

No community discussion yet for this question.

Full ML0-320 Practice