A security engineer is validating a server's hardening posture against CIS Benchmarks. Which TWO of the following configurations must be verified for the SSH service?
Empty passwords present a trivial security risk.
Why this answer
Hardening SSH requires disabling insecure protocols and authentication methods.