To evaluate the security compliance of a group of servers against best practices, which of the following BEST applies?
A.
Get a patch management report.
B.
Conduct a penetration test.
C.
Run a vulnerability assessment tool.
D.
Install a protocol analyzer.
Can someone explain the difference of a protocol analyzer and vulnerability assessment tool to me? Thanks in advance.
Protocol analyzer is used to examine network traffic to and from the system in question. This would show you TCP and UDP traffic for example. A vulnerability assessment tool runs known exploits against the system at the network as well as the service and application level.
a protocol is a standard set of rules for communicating.