An administrator needs to perform server hardening before deployment. Which of the following steps should the administrator take? (Choose two.)
Choose an answer
Tap an option to check your answer.
Correct answer: Disable default accounts., Remove unnecessary services..
Why this is the answer
Disabling default accounts and removing unnecessary services are crucial steps in server hardening. Default accounts often have well-known usernames and sometimes default passwords, making them a significant security vulnerability if not disabled or renamed. Unnecessary services increase the attack surface of the server; each running service can have vulnerabilities that an attacker could exploit. By removing or disabling services not essential for the server's function, you reduce potential entry points for attackers. Adding the server to asset inventory, documenting default passwords, sending logs to a SIEM, and joining the server to a corporate domain are important security practices, but they are not direct hardening steps. Asset inventory is for management, documenting default passwords is a poor practice (they should be changed or accounts disabled), SIEM integration is for monitoring, and domain joining is for centralized management and authentication, not directly reducing the attack surface of the server itself.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed