New Year Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the CompTIA CloudNetX CNX-001 Questions and answers with CertsForce

Viewing page 3 out of 3 pages
Viewing questions 21-30 out of questions
Questions # 21:

After a malicious actor used an open port in a company's lobby, a network architect needs to enhance network security. The solution must enable:

    Security posture check

    Auto remediation capabilities

    Network isolation

    Device and user authentication

Which of the following technologies best meets these requirements?

Options:

A.

IPS


B.

Microsegmentation


C.

802.1X


D.

NAC


Expert Solution
Questions # 22:

An organization has centralized logging capability at the on-premises data center and wants a solution that can consolidate logging from deployed cloud workloads. The organization would like to automate the detection and alerting mechanism. Which of the following best meets the requirements?

Options:

A.

IDS/IPS


B.

SIEM


C.

Data lake


D.

Syslog


Expert Solution
Questions # 23:

End users are getting certificate errors and are unable to connect to an application deployed in a cloud. The application requires HTTPS connection. A network solution architect finds that a firewall is deployed between end users and the application in the cloud. Which of the following is the root cause of the issue?

Options:

A.

The firewall on the application server has port 443 blocked.


B.

The firewall has port 443 blocked while SSL/HTTPS inspection is enabled.


C.

The end users do not have certificates on their laptops.


D.

The firewall has an expired certificate while SSL/HTTPS inspection is enabled.


Expert Solution
Questions # 24:

As part of a project to modernize a sports stadium and improve the customer service experience for fans, the stadium owners want to implement a new wireless system. Currently, all tickets are electronic and managed by the stadium mobile application. The new solution is required to allow location tracking precision within 5ft (1.5m) of fans to deliver the following services:

    Emergency/security assistance

    Mobile food order

    Event special effects

    Raffle winner location displayed on the giant stadium screen

Which of the following technologies enables location tracking?

Options:

A.

SSID


B.

BLE


C.

NFC


D.

IoT


Expert Solution
Questions # 25:

A company has a 40Gbps network that uses a network tap to inspect the traffic using an IDS. The IDS usually performs normally except when the servers are downloading patches from their local update repository 10.10.10.139 using HTTPS. During the patch windows, the IDS cannothandle the extra load and drops a significant number of packets. Which of the following would allow a network engineer to prevent this issue without compromising the network visibility?

Options:

A.

Configuring the IDS to ignore traffic from 10.10.10.139


B.

Using PF_RING offload to filter out "host 10.10.10.139 and port 443"


C.

Adding a "dst host 10.10.10.139" BPF on the tap


D.

Scheduling a cron job to stop the IDS service during the patch window


Expert Solution
Viewing page 3 out of 3 pages
Viewing questions 21-30 out of questions