Thread Content
8.31--In the CAESARII version of the daily quiz to increase knowledge, those who answer correctly gain 10 units of wealth while those who get it wrong gain 3 units. A certain corporate group deployed front-end servers in its various branches based on business needs. To ensure security, the group’s headquarters required that these front-end servers enable log sharing, so that the headquarters’ servers could collect the logs for centralized analysis. It was discovered during operation that attackers could also extract logs from the front-end servers through this sharing mechanism, resulting in the leakage of some sensitive information. Based on the principle of reducing the attack surface, which of the following measures should be taken? A. Since logging sharing is causing security issues, it should be disabled immediately, and the headquarters should be prevented from extracting logs for analysis. B. To comply with the headquarters’ security policies, although this may pose certain security risks, it does not affect system usage; therefore, this risk should be accepted. C. The very existence of logs represents a security risk, so the best solution is to eliminate logging by configuring the front-end servers not to record any logs. D. Only specific IP addresses should be allowed to extract logs from the front-end servers, and access to the shared logs should be secured with passwords along with time restrictions on access&
D. Only specific IP addresses are allowed to retrieve logs from the front-end machine; an access password is set for log sharing, and access times are restricted