A network security analyst has noticed a flood of Simple Mail Transfer Protocol (SMTP) traffic to internal clients. SMTP traffic should only be allowed to email servers. Which of the following commands would stop this attack? (Choose two.)
You know, if this was a real-life SMTP attack, the best solution would be to just unplug the whole network. That'll stop the traffic for sure! But I guess that's not very practical.
Ha! Option E is clearly not the right answer. Blocking incoming traffic on port range 6881-6889 has nothing to do with stopping an SMTP attack. Someone's trying to be funny with that one.
I think Options A and B are incorrect because they are accepting SMTP traffic instead of blocking it. The question asks for a solution to stop the SMTP attack, so we need to drop the SMTP traffic.
The correct answers are C and D. Option C blocks all incoming SMTP traffic, while Option D blocks all incoming FTP traffic. Blocking FTP is not relevant here, so Option D is not the right choice.
Yoko
14 days agoKatina
15 days agoQueenie
18 days agoNatalya
19 days agoLuis
3 days agoVincenza
2 months agoRoslyn
18 days agoRoslyn
23 days agoHarris
2 months agoDominga
2 months agoArtie
2 months ago