정보안내공지사항
2006 CISA Review Questions, Answers & Explanations Manual(625제) 오류 정정 
 
안녕하세요, 사무국입니다.

 

2006 CISA Review Questions, Answers & Explanations Manual(625제)의

C4-69의 답을 B에서 D로 정정합니다.

 

혼돈을 드려 죄송합니다.


감사합니다.

 

 

C4-69   다음 중 프로토콜의 취약점을 이용하는 네트워크 웜 바이러스의 확산에 가장 효과적인 대처 방법은 어느 것인가?

        A. 취약점에 대한 공급업체의 보안 수정사항(security fix)을 설치한다.

        B. 경계선(perimeter) 방화벽의 프로토콜 트래픽을 차단한다.

        C. 내부 네트워크 세그먼트 사이의 프로토콜 트래픽을 차단한다.

        D. 적절한 보안 수정사항이 설치될 때까지 서비스를 중지한다.




D     서비스를 중지하고 보안 수정사항을 설치하는 것은 웜 바이러스의 확산을 방지하는 가장 안전한 방법이다. 만일 서비스가 중지되지 않는다면, 수정사항이 효력을 발휘하게 될 때까지 웜 바이러스가 계속 확산되기 때문에 수정사항 설치는 가장 효과적인 방법이 아니다. 경계선 상의 프로토콜을 차단하는 것은 웜 바이러스가 내부 네트워크에서 확산되는 것을 중지시키지 못한다. 프로토콜의 차단은 웜 바이러스의 확산 속도를 떨어뜨릴 수는 있지만 세그먼트 사이를 통과하는 모든 소프트웨어를 사용할 수 없게 한다.

 

 




영문 원본

C4-69 Which of the following is the MOST effective method for dealing with the spreading of a network worm that

exploits a vulnerability in a protocol?



A. Install the vendor’s security fix for the vulnerability.

B. Block the protocol traffic in the perimeter firewall.

C. Block the protocol traffic between internal network segments.

D. Stop the service until an appropriate security fix is installed.



D      Stopping the service and installing the security fix is the safest way to prevent the worm from spreading.

If the service is not stopped, installing the fix is not the most effective method because the worm continues

spreading until the fix becomes effective. Blocking the protocol on the perimeter does not stop the worm from

spreading to the internal network(s). Blocking the protocol helps to slow down the spreading but also prohibits

every software that utilizes it from working between segments