ISC2 CC Network Security Practice Question
An organization wants to securely manage network devices from remote locations. Which of the following protocols should be used for command-line access?
⚠ Common exam trap
CC often tests secure alternatives; candidates might choose Telnet for command-line access due to familiarity, but the question emphasizes secure management, making SSH the correct choice.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
SSH
SSH (Secure Shell) provides encrypted command-line access to network devices, ensuring confidentiality and integrity of the session. It is the standard protocol for secure remote administration. The other protocols either lack encryption or are not designed for command-line access.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
HTTP
Why it's wrong here
HTTP transfers web content and provides no interactive command-line session, so it cannot manage device CLIs. It is tempting because it is a familiar application-layer protocol, and it would be the right choice for serving a device's web-based management interface rather than remote shell access.
- ✓
SSH
Why this is correct
SSH encrypts the entire session, including credentials and commands, over TCP port 22, satisfying the requirement for secure remote command-line access. Unlike Telnet, which transmits data in plaintext, SSH provides confidentiality and integrity, making it the appropriate protocol for managing network devices from untrusted remote locations.
- ✗
Telnet
Why it's wrong here
Telnet carries credentials and session data in cleartext, failing the requirement for secure remote management. It is tempting because it does provide exactly the command-line access requested, and would be correct only on an isolated, trusted management network where encryption is not mandated.
- ✗
FTP
Why it's wrong here
FTP moves files between hosts and offers no interactive command-line session on the device. It is tempting as a well-known TCP protocol for device administration, and would be the right choice for transferring configuration or firmware files to and from network equipment.
Go deeper
Related to this question
Learn chapter
Network Security Components and Controls
Key term
Encryption
Encryption is the process of converting readable data into a secret code to prevent unauthorized access.
Key term
Integrity
Integrity is the assurance that data has not been altered or tampered with in an unauthorized way, preserving its accuracy and consistency from source to destination.
About these practice questions
One of 989 original CC practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official ISC2 exam blueprint
This CC practice question is part of Courseiva's free ISC2 certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CC exam.