nerdexam
ExamsSG0-001Questions#339
CompTIA

SG0-001 · Question #339

SG0-001 Question #339: Real Exam Question with Answer & Explanation

The correct answer is B. Fiber channel zoning. Fiber Channel zoning improves data confidentiality in a SAN fabric by creating logical partitions that restrict which devices can communicate with each other. This prevents unauthorized servers from accessing specific LUNs.

Storage Management

Question

A system administrator has been tasked to create a new LUN for a system that will store sensitive information. The system connects to the SAN via switched fabric. Which of the following can the system administrator implement in the fabric to improve confidentiality of the data stored in the new LUN?

Options

  • AHardware initiators
  • BFiber channel zoning
  • CLUN masking
  • DRandom SCSI IDs

Explanation

Fiber Channel zoning improves data confidentiality in a SAN fabric by creating logical partitions that restrict which devices can communicate with each other. This prevents unauthorized servers from accessing specific LUNs.

Common mistakes.

  • A. Hardware initiators are physical components (like HBA cards) that allow a server to connect to a SAN, but they do not inherently improve confidentiality within the fabric.
  • C. LUN masking is typically performed at the storage array level to restrict host access to specific LUNs, not within the switched fabric itself, though both contribute to storage security.
  • D. Random SCSI IDs are identifiers for devices on a SCSI bus and have no direct bearing on improving data confidentiality within a Fiber Channel SAN fabric.

Concept tested. Fiber Channel SAN security-zoning

Reference. https://www.cisco.com/c/en/us/td/docs/switches/datacenter/mds9000/sw/6_2/configuration/guides/fm_6_2_config/fm_zoning.html

Topics

#SAN security#Fibre Channel zoning#LUN masking#confidentiality

Community Discussion

No community discussion yet for this question.

Full SG0-001 Practice