ITPEC FE Morning April 2022 Question 43
ITPEC FE Morning April 2022 — Question 43 of 80
LAN Analyzer & Mirror Port Security — key consideration when using a packet sniffer via a mirror port.
A LAN analyzer (packet sniffer) connected to a mirror port captures copies of all packets passing through the network.
Main concern: Since the analyzer can display all network traffic (including sensitive data), it is necessary to prevent misuse such as wiretapping.
Key facts:
- Mirror port duplicates traffic to the analyzer — no cable disconnection needed
- The analyzer reads copies of packets, it does not dispose of or modify them
- The tool is passive — it does not interrupt normal network operation
Why not others:
- (a) Informing users about storage location of the analyzer is not a relevant security concern
- (b) No cable disconnection is required — mirror port works transparently
- (d) The analyzer does not "dispose" of packets — it only captures and displays them
Key rule: When deploying a LAN analyzer, the primary concern is preventing unauthorized traffic interception (wiretapping/eavesdropping).
AI-generated — may contain errors
The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.
This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official FE past-paper collection or Report an issue.