A server administrator wants to harden a server for secure traffic only. A port scan shows open ports 443 and 636. Which of the following ports should be closed? (Choose two.)

Enhance your IT career with CompTIA Server+ Exam prep. Study anytime with flashcards and engaging multiple choice questions. Detailed explanations at your fingertips!

Multiple Choice

A server administrator wants to harden a server for secure traffic only. A port scan shows open ports 443 and 636. Which of the following ports should be closed? (Choose two.)

Explanation:
To effectively harden a server for secure traffic, it is essential to prioritize the use of secure protocols. In this scenario, the server is operating on ports 443 and 636, which correspond to HTTPS and LDAPS, respectively. Closing unnecessary ports helps reduce the surface area for potential attacks. Choosing to close port 23, which is used for Telnet, is particularly important. Telnet transmits data, including usernames and passwords, in plaintext without any encryption, making it susceptible to interception. By closing this port, the server would eliminate an insecure method of remote access, reinforcing the overall security posture. Closing port 80, the default port for HTTP, is also advisable because it supports unencrypted web traffic, which is at risk of eavesdropping and man-in-the-middle attacks. Even if secure versions of the services are available on ports 443 and 636, keeping port 80 open would allow unsecure communications, undermining the hardening effort. While port 53 is used for DNS and port 139 is associated with NetBIOS services, they are less critical in the context of securing web-based services. Thus, closing ports 23 and 80 would be the most effective measures for minimizing potential vulnerabilities related to insecure

To effectively harden a server for secure traffic, it is essential to prioritize the use of secure protocols. In this scenario, the server is operating on ports 443 and 636, which correspond to HTTPS and LDAPS, respectively. Closing unnecessary ports helps reduce the surface area for potential attacks.

Choosing to close port 23, which is used for Telnet, is particularly important. Telnet transmits data, including usernames and passwords, in plaintext without any encryption, making it susceptible to interception. By closing this port, the server would eliminate an insecure method of remote access, reinforcing the overall security posture.

Closing port 80, the default port for HTTP, is also advisable because it supports unencrypted web traffic, which is at risk of eavesdropping and man-in-the-middle attacks. Even if secure versions of the services are available on ports 443 and 636, keeping port 80 open would allow unsecure communications, undermining the hardening effort.

While port 53 is used for DNS and port 139 is associated with NetBIOS services, they are less critical in the context of securing web-based services. Thus, closing ports 23 and 80 would be the most effective measures for minimizing potential vulnerabilities related to insecure

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy