CompTIA Security+ SY0-601 – Question225

A new vulnerability in the SMB protocol on the Windows systems was recently discovered, but no patches are
currently available to resolve the issue. The security administrator is concerned that servers in the company's
perimeter network will be vulnerable to external attack; however, the administrator cannot disable the service
on the servers, as SMB is used by a number of internal systems and applications on the LAN. Which of the
following TCP ports should be blocked for all external inbound connections to the perimeter network as a
workaround to protect the servers? (Choose two.)


A.
135
B. 139
C. 143
D. 161
E. 443
F. 445

Correct Answer: AF