coldbug wrote: » I got this question wrong. I won't tell you what I answered, but I want to see what you will answer and get it wrong like me. Please also explain why you chose that answer as well. Thanks. A database administrator contacts a security administrator to request firewall changes for a connection to a new internal application. The security administrator notices that the new application uses a port typically monopolized by a virus. The security administrator denies the request and suggests a new port or service be used to complete the application’s task. Which of the following is the security administrator practicing in this example? A. Explicit deny B. Port security C. Access control lists D. Implicit deny
NetworkNewb wrote: » Access Control Lists, but I can see an argument for Implicit Deny too
coldbug wrote: » The security administrator denies the request... A. Explicit deny
McxRisley wrote: » They key things here are "The security administrator notices that the new application uses a port typically monopolized by a virus." and "The security administrator denies the request and suggests a new port or service be used to complete the application’s task." The admin does not use Explicit Deny because the rule is already in place through the use of ACLs, he denied the DBA's request to change the ACL. Also some quick googling will turn up that the Answer is C. LOL!
si20 wrote: » You mean an implicit deny, surely? The question itself doesn't say there's an explicit deny in the ACL That's the problem with the question - it isn't black and white - it leaves you with more questions than answers. The fact we're all debating this shows that the question is poor at best. I'd hate to fail an exam on this kind of question. The way it's worded makes it sound like A is the correct answer.