200-301 exam dumps

200-301 practice question 425 of 506

Cisco Certified Network Associate. Free level, Cisco. Free question with the correct answer and a full explanation.

200-301 Question 425

Select 4

An organization is implementing a new security password policy on their network devices. The policy requires passwords to be strong, secure, and compliant with best practices. Which of the following elements should be included in the password policy to ensure compliance?

  1. A

    Require a minimum password length of 8 characters

  2. B

    Enforce the inclusion of at least one uppercase letter, one lowercase letter, one number, and one special character

  3. C

    Allow passwords to be reused after 5 password changes

  4. D

    Set a maximum password age to require periodic password changes

  5. E

    Disable account lockouts to prevent user inconvenience

  6. F

    Enable password history to prevent users from reusing recent passwords

Show answer and explanation

Correct answers: A, B, D, F

Explanation

A strong password policy is essential for securing network devices. Key elements include enforcing minimum password length, complexity requirements, periodic password changes through maximum password age, and enabling password history to prevent reuse of recent passwords. These measures collectively reduce the risk of password-based attacks, ensuring the security of network infrastructure.

  • A. Correct.

    Correct: A minimum password length helps ensure that passwords are not easily guessable or brute-forced.

  • B. Correct.

    Correct: Requiring a mix of character types increases password complexity and makes them more resistant to attacks.

  • C. Incorrect.

    Incorrect: Allowing password reuse undermines security, as it increases the risk of password compromise.

  • D. Correct.

    Correct: Setting a maximum password age ensures that passwords are regularly updated, reducing the risk of long-term exposure.

  • E. Incorrect.

    Incorrect: Disabling account lockouts reduces security by allowing unlimited password attempts, which can enable brute-force attacks.

  • F. Correct.

    Correct: Enabling password history prevents users from reusing recent passwords, which enhances security by ensuring new, unique passwords are created.

Timed practice exam

Take a 200-301 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam