Study. uk . com
  1. Home
  2. All questions
  3. Question 512

CompTIA Security+ study material · question 512 of 611

What is the principal security weakness of base syslog for centralised logging?

  1. It cannot cross network segments
  2. The base protocol offers no authentication or confidentiality
  3. It requires an agent on every host
  4. It cannot carry structured data
Show the answer

Answer: B. The base protocol offers no authentication or confidentiality

Without them, log entries can be observed in transit or forged by anything that can reach the collector.

Source: NIST SP 800-92 (NIST) — SP 800-92 §§ 3.3.1–3.3.2 Syslog Format and Syslog Security

Challenge yourself on this topic → Study as cards