ISC2 Systems Security Certified Practitioner (SSCP) Practice Question
You are configuring a security group for a Windows Server 2019 EC2 instance that resides in a private subnet behind a site-to-site VPN. Administrators in the corporate office connect from the 203.0.113.0/24 network. To enable Remote Desktop logins while following the principle of least privilege, which single inbound security group rule should you add?
Remote Desktop Protocol (RDP) listens on TCP port 3389. To follow least-privilege principles, access should be restricted to only the trusted source network-in this case, the corporate office's 203.0.113.0/24 CIDR. Opening UDP on 3389 is unnecessary for standard RDP sessions, opening a wider port range exposes additional attack surface, and port 22 is for SSH, not RDP. Allowing 0.0.0.0/0 would expose the service to the entire internet, violating least-privilege requirements.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
Why is TCP port 3389 used for Remote Desktop Protocol (RDP)?
Open an interactive chat with Bash
What does the principle of least privilege mean in network configuration?
Open an interactive chat with Bash
Why is using 0.0.0.0/0 as the source considered insecure?
Open an interactive chat with Bash
ISC2 Systems Security Certified Practitioner (SSCP)
Network and Communication Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99 $11.99
$11.99/mo
Billed monthly, Cancel any time.
$19.99 after promotion ends
3 Month Pass
$44.99 $26.99
$8.99/mo
One time purchase of $26.99, Does not auto-renew.
$44.99 after promotion ends
Save $18!
MOST POPULAR
Annual Pass
$119.99 $71.99
$5.99/mo
One time purchase of $71.99, Does not auto-renew.
$119.99 after promotion ends
Save $48!
BEST DEAL
Lifetime Pass
$189.99 $113.99
One time purchase, Good for life.
Save $76!
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .