An external edge router provides connectivity from a service provider to an enterprise. Which two Internet edge best practices meet compliance regulations? (Choose two)
A.
Implement filtering to control traffic that is sourced from the infrastructure IP space.
B.
Enable and use only secure protocols.
C.
Send logs to a centralized logging collection server.
D.
Implement EBGP to advertise all owned IP blocks.
E.
Use login banners and interface access lists to restrict administrative access to the system.
B (Use only secure protocols): Management and administrative access to Internet edge routers must use secure protocols (SSH, SNMPv3, HTTPS) to prevent interception or unauthorized access.
E (Restrict administrative access): Limiting administrative access via interface ACLs and clear login banners ensures that only authorized personnel can access the system, satisfying compliance and security requirements.
Other options explained:
A: Filtering infrastructure IP space is good hygiene but not directly related to compliance.
C: Logging is valuable for operations and incident response but not a compliance control by itself.
D: EBGP advertisements relate to routing policy, not compliance regulation.
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit