N10-009 · Question #187
A company's office has publicly accessible meeting rooms equipped with network ports. A recent audit revealed that visitors were able to access the corporate network by plugging personal laptops…
The correct answer is D. NAC. Network Access Control (NAC) is the most comprehensive solution to prevent unauthorized access by visitors plugging into corporate network ports, as it authenticates devices and users before granting network access and can enforce policies.
Question
A company's office has publicly accessible meeting rooms equipped with network ports. A recent audit revealed that visitors were able to access the corporate network by plugging personal laptops into open network ports. Which of the following should the company implement to prevent this in the future?
Options
- AURL filters
- BVPN
- CACLs
- DNAC
How the community answered
(17 responses)- A6% (1)
- B12% (2)
- C6% (1)
- D76% (13)
Why each option
Network Access Control (NAC) is the most comprehensive solution to prevent unauthorized access by visitors plugging into corporate network ports, as it authenticates devices and users before granting network access and can enforce policies.
URL filters block access to specific websites and do not control initial network access or authentication for devices.
A VPN (Virtual Private Network) provides secure remote access but doesn't prevent unauthorized devices from connecting to a *local* network port without proper authentication.
ACLs (Access Control Lists) can block traffic based on IP addresses or ports, but they do not provide the dynamic authentication and policy enforcement capabilities needed to prevent *any* unauthorized device from initially connecting.
Network Access Control (NAC) is designed to authenticate, authorize, and evaluate the security posture of devices and users attempting to connect to a network before granting them access. By implementing NAC, the company can ensure that only authorized and compliant devices (e.g., corporate laptops with specific configurations) can connect to the corporate network through the meeting room ports, effectively blocking personal visitor laptops.
Concept tested: Network access control and security
Source: https://www.cisco.com/c/en/us/products/security/network-access-control-nac/index.html
Community Discussion
No community discussion yet for this question.