SK0-005 Exam Question 361

The network's IDS is giving multiple alerts that unauthorized traffic from a critical application server is being sent to a known-bad public IP address.
One of the alerts contains the following information:
Exploit Alert
Attempted User Privilege Gain
2/2/07-3: 09:09 10.1.200.32
--> 208.206.12.9:80
This server application is part of a cluster in which two other servers are also servicing clients. The server administrator has verified the other servers are not sending out traffic to that public IP address. The IP address subnet of the application servers is 10.1.200.0/26. Which of the following should the administrator perform to ensure only authorized traffic is being sent from the application server and downtime is minimized? (Select two).
  • SK0-005 Exam Question 362

    An organization stores backup tapes of its servers at cold sites. The organization wants to ensure the tapes are properly maintained and usable during a DR scenario. Which of the following actions should the organization perform?
  • SK0-005 Exam Question 363

    An organization implements split encryption keys for sensitive files. Which of the following types of risks does this mitigate?
  • SK0-005 Exam Question 364

    An administrator is troubleshooting connectivity to a remote server. The goal is to remotely connect to the server to make configuration changes. To further troubleshoot, a port scan revealed the ports on the server as follows:
    Port 22: Closed
    Port 23: Open
    Port 990: Closed
    Which of the following next steps should the administrator take?
    Reboot the workstation and then the server.
  • SK0-005 Exam Question 365

    A server technician installs a new NIC on a server and configures the NIC for IP connectivity. The technician then tests the connection using the ping command. Given the following partial output of the ping and ipconfig commands:

    Which of the following caused the issue?