SK0-005 · Question #3
Which of the following must a server administrator do to ensure data on the SAN is not compromised if it is leaked?
The correct answer is B. Encrypt the data at rest. The threat scenario is a data leak – meaning the raw storage media or its contents are exposed to an unauthorized party. Encrypting data at rest ensures that even if someone physically removes drives from the SAN or gains unauthorized access to the raw data, the contents are…
Question
Which of the following must a server administrator do to ensure data on the SAN is not compromised if it is leaked?
Options
- AEncrypt the data that is leaving the SAN
- BEncrypt the data at rest
- CEncrypt the host servers
- DEncrypt all the network traffic
How the community answered
(68 responses)- A4% (3)
- B88% (60)
- C1% (1)
- D6% (4)
Explanation
The threat scenario is a data leak – meaning the raw storage media or its contents are exposed to an unauthorized party. Encrypting data at rest ensures that even if someone physically removes drives from the SAN or gains unauthorized access to the raw data, the contents are unreadable without the decryption key. Encrypting data in transit or network traffic protects against interception during movement, not against the storage itself being compromised.
Topics
Community Discussion
No community discussion yet for this question.