Exam SY0-701 All QuestionsBrowse all questions from this exam
Question 79

After a recent vulnerability scan, a security engineer needs to harden the routers within the corporate network. Which of the following is the most appropriate to disable?

    Correct Answer: D

    To harden routers within a corporate network, disabling web-based administration is the most appropriate action. Web-based administration allows for remote management via a web browser but also introduces potential vulnerabilities by exposing the router to web-based attacks. Disabling this feature reduces the attack surface and prevents exploits. Console access is necessary for local management, routing protocols are essential for network operation, and VLANs are used for network segmentation and security.

Discussion
499c5c4Option: D

The most appropriate option to disable to harden the routers would be: D. Web-based administration Web-based administration, also known as remote management or HTTP/HTTPS access, is a common feature in routers that allows administrators to manage the device remotely using a web browser. However, this feature also introduces a potential vulnerability, as it opens up the router to potential web-based attacks. Disabling web-based administration would reduce the attack surface and prevent potential exploits, making the router more secure. Console access (A) is necessary for local management, routing protocols (B) are essential for network operation, and VLANs (C) are used for network segmentation and security. Disabling web-based administration (D) is the most appropriate option to harden the router.