Which of the following protocols provides secure remote administration of a network device over an untrusted network?
SSH encrypts the entire session, including authentication credentials and commands, using strong ciphers over TCP port 22. This satisfies the stem's untrusted-network constraint, unlike Telnet, which transmits everything in cleartext. It also supports key-based authentication and tunnelling, making it the standard for secure remote administration of network devices.
Why this answer
SSH (Secure Shell) is correct because it encrypts all traffic, including authentication credentials and commands, using strong cryptographic algorithms, making it safe for remote administration over untrusted networks. It operates on TCP port 22 and provides confidentiality, integrity, and authentication, unlike cleartext protocols. SSH is the standard for secure CLI access to network devices such as routers and switches.
How to eliminate wrong answers
Option A is wrong because SNMPv1 uses community strings in cleartext and lacks encryption or authentication, making it insecure for remote administration over untrusted networks. Option B is wrong because Telnet transmits all data, including usernames and passwords, in plaintext, allowing anyone with packet capture access to intercept credentials and commands. Option C is wrong because HTTP transmits data unencrypted, and while HTTPS exists, the question specifies HTTP, which provides no security for remote administration.