If you find the 111/TCP port open on a Unix system, what is the next logical step to take?
Port 111/TCP is the default port for the RPC (Remote Procedure Call) portmapper service on Unix systems, which registers and manages RPC services.
Why A is correct: Running rpcinfo -p <hostname> queries the portmapper to list all registered RPC services, their programs, versions, and associated ports. This is a logical next step during a security audit or penetration test to identify potential vulnerabilities (e.g., NFS or NIS services). CNSP recommends this command for RPC enumeration.
Why other options are incorrect:
B . Telnet to the port to look for a banner: Telnet might connect, but RPC services don't typically provide a human-readable banner, making this less effective than rpcinfo.
C . Telnet to the port, send 'GET / HTTP/1.0' and gather information from the response: Port 111 is not an HTTP service, so an HTTP request is irrelevant and will likely fail.
D . None of the above: Incorrect, as A is a valid and recommended step.
Bernadine
3 months agoLashaun
23 days agoPearlene
24 days agoMarci
25 days agoCarolynn
26 days agoEvelynn
27 days agoRessie
1 months agoFelicitas
1 months agoNoemi
2 months agoLatanya
2 months agoReiko
2 months agoArlette
3 months agoCherelle
3 months agoRefugia
3 months agoVirgie
3 months agoMitzie
3 months agoAlonso
2 months agoAlex
2 months agoAlison
2 months agoJean
3 months agoInocencia
3 months agoJean
3 months ago