GCIH SMB Security Practice Question
What is the primary function of SMB (Server Message Block) in a Windows network environment?
⚠ Common exam trap
Candidates often mistake SMB for a remote terminal protocol like RDP or SSH, confusing file and printer sharing functions with remote command execution interfaces.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
To enable file, printer, and resource sharing across a network
SMB is the primary network file sharing protocol used in Windows environments, facilitating access to files, printers, and serial ports on remote systems. It acts as a client-server communication protocol, allowing users to interact with shared resources as if they were local. Because it is so widely used for infrastructure services, its security configuration is a primary concern for protecting enterprise data and maintaining system integrity against unauthorized access.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
To provide a secure method for remote desktop management
Why it's wrong here
SMB is not designed for remote desktop management; that function is handled by the Remote Desktop Protocol (RDP). Confusing these protocols can lead to improper firewall configurations, as RDP requires port 3389, whereas SMB utilizes port 445 for its communication, which serves a completely different purpose in network architecture.
- ✓
To enable file, printer, and resource sharing across a network
Why this is correct
SMB serves as the backbone for file and resource sharing in Windows. It enables users and applications to request and receive files and print jobs from remote servers, acting as a critical component of network operations that requires careful security management to prevent data leakage and lateral movement attacks.
- ✗
To manage directory services and user authentication
Why it's wrong here
Directory services and user authentication are primarily handled by LDAP and Kerberos in an Active Directory environment. While SMB interacts with authentication protocols to verify access, it is not responsible for the directory service itself, which is a common misconception regarding the role of file sharing protocols.
- ✗
To provide encrypted terminal access to server consoles
Why it's wrong here
Terminal access is generally provided by SSH or RDP. SMB provides access to data and resources on a file system level, not interactive terminal access. Attempting to use SMB for console management would be ineffective and insecure, as the protocol is designed for file system I/O, not remote command execution.
About these practice questions
One of 322 original GCIH practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official GIAC exam blueprint
This GCIH practice question is part of Courseiva's free GIAC certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the GCIH exam.