Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

ECCouncil Certified Ethical Hacker Exam (CEHv13) 312-50v13 Question # 53 Topic 6 Discussion

ECCouncil Certified Ethical Hacker Exam (CEHv13) 312-50v13 Question # 53 Topic 6 Discussion

312-50v13 Exam Topic 6 Question 53 Discussion:
Question #: 53
Topic #: 6

A threat intelligence review at a manufacturing firm in Pittsburgh, Pennsylvania, revealed repeated external queries targeting the organization’s public name servers. Although no intrusion occurred, analysts observed that the queries appeared designed to systematically map internal naming conventions and infrastructure patterns.

The security team determined that the issue was not excessive traffic volume but rather the exposure of internal namespace details through responses handled by the same server used for both internal and external resolution. To reduce the risk of disclosing sensitive structural information to outside systems, the team redesigned their DNS deployment.

Which countermeasure best addresses the risk described in this scenario?


A.

Randomizing DNS Source Ports and Query Identifiers


B.

Implementing a Split DNS Architecture


C.

Implementing Rate Limiting on DNS Servers


D.

Enabling DNS Logging and Anomaly Detection


Get Premium 312-50v13 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.