Answered step by step
Verified Expert Solution
Link Copied!

Question

1 Approved Answer

A penetration tester is able to compromise a web server in your company's DMZ. From the web server, he scanned other systems on the network,

A penetration tester is able to compromise a web server in your company's DMZ. From the web server, he scanned other systems on the network, and compromised an unpatched file server on the private network. In addition to improving patch management, which control would you recommend to prevent the spread of an attack like this in the future?

Block ports other than 80 and 443 for traffic destined to the DMZ where your web server is located.

Restrict traffic from the DMZ to internal hosts and ports required for web applications.

Use a firewall to prevent DMZ systems from initiating outbound connections to the Internet.

Install a router to prevent traffic originating in the DMZ from reaching internal network systems.

Step by Step Solution

There are 3 Steps involved in it

Step: 1

blur-text-image

Get Instant Access to Expert-Tailored Solutions

See step-by-step solutions with expert insights and AI powered tools for academic success

Step: 2

blur-text-image

Step: 3

blur-text-image

Ace Your Homework with AI

Get the answers you need in no time with our AI-driven, step-by-step assistance

Get Started

Recommended Textbook for

Database Publishing With Filemaker Pro On The Web

Authors: Maria Langer

1st Edition

0201696657, 978-0201696653

More Books

Students also viewed these Databases questions

Question

Is there a clear hierarchy of points in my outline?

Answered: 1 week ago