Free CAS-003 Exam Braindumps (page: 43)

Page 43 of 137

A network engineer is upgrading the network perimeter and installing a new firewall, IDS, and external edge router. The IDS is reporting elevated UDP traffic, and the internal routers are reporting high utilization. Which of the following is the BEST solution?

  1. Reconfigure the firewall to block external UDP traffic.
  2. Establish a security baseline on the IDS.
  3. Block echo reply traffic at the firewall.
  4. Modify the edge router to not forward broadcast traffic.

Answer(s): B



An administrator is working with management to develop policies related to the use of the cloud-based resources that contain corporate data. Management plans to require some control over organizational data stored on personal devices, such as tablets. Which of the following controls would BEST support management’s policy?

  1. MDM
  2. Sandboxing
  3. Mobile tokenization
  4. FDE
  5. MFA

Answer(s): A



Users have been reporting unusual automated phone calls, including names and phone numbers, that appear to come from devices internal to the company. Which of the following should the systems administrator do to BEST address this problem?

  1. Add an ACL to the firewall to block VoIP.
  2. Change the settings on the phone system to use SIP-TLS.
  3. Have the phones download new configurations over TFTP.
  4. Enable QoS configuration on the phone VLAN.

Answer(s): B



A consulting firm was hired to conduct assessment for a company. During the first stage, a penetration tester used a tool that provided the following output:

TCP 80 open
TCP 443 open
TCP 1434 filtered

The penetration tester then used a different tool to make the following requests:
GET / script/login.php?token=45$MHT000MND876
GET / script/login.php?token=@#984DCSPQ%091DF

Which of the following tools did the penetration tester use?

  1. Protocol analyzer
  2. Port scanner
  3. Fuzzer
  4. Brute forcer
  5. Log analyzer
  6. HTTP interceptor

Answer(s): C



Page 43 of 137



Post your Comments and Discuss CompTIA CAS-003 exam with other Community members:

Nathan commented on April 20, 2020
I appreicate that you provide the Xengine software for free. But are you planning to keep it free! I really hope so!
GERMANY
upvote