Which approach is intended to prevent exploits that target syslog?

IT Exam Items RepositoryCategory: CCNA CyberOpsWhich approach is intended to prevent exploits that target syslog?

Which approach is intended to prevent exploits that target syslog?

  • Use a Linux-based server.
  • Use syslog-ng.
  • Create an ACL that permits only TCP traffic to the syslog server.
  • Use a VPN between a syslog client and the syslog server.

Explanation: Hackers may try to block clients from sending data to the syslog server, manipulate or erase logged data, or manipulate the software used to transmit messages between the clients and the server. Syslog-ng is the next generation of syslog and it contains improvements to prevent some of the exploits.

Related exam: Checkpoint Exam: Protocols and Log Files Group Exam Related exam: CCNA Cyber Ops Practice Final Exam Answers