SNMP Protocol for Healthcare MPLS VPN
A healthcare customer requested that SNMP traps must be sent over the MPLS Layer 3 VPN service. Which protocol must be enabled?
Community Votes
100% of anonymous learners picked answer B. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
The exam tests knowledge of SNMP version capabilities. The common trap is selecting SNMPv2 because it is more common, ignoring the implicit security requirements of the healthcare context.
This question tests the selection of SNMP versions for secure environments. It establishes that SNMPv3 is required due to its built-in security features, which are critical for healthcare compliance.
Candidates often choose SNMPv2 (C) because it is widely used and simpler, failing to recognize that the 'healthcare' keyword implies a need for encryption and authentication that v2 lacks.
Community Discussion (4 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Why the Answer Is Correct
The correct answer is B (SNMPv3). In certification exams, specific industry contexts like 'healthcare' act as triggers for security requirements. Healthcare data is sensitive (PHI), necessitating encryption and strong authentication. SNMPv3 is the only version among the options that supports these features natively.Why the Other Options Are Wrong
SNMPv2 (C) and syslog (A, D) lack native encryption; they send data in clear text, which violates security best practices for sensitive sectors. SSH (E) is a protocol for secure shell access, not for managing network traps. Syslog TLS (D) secures logs but does not address the SNMP trap requirement.Community Comment Notes
Community members highlight that SNMPv2 is technically SNMPv2c, lacking security. As noted by Devsin2000, SNMPv3 is the accurate choice for security. Others point out that while the question doesn't explicitly say 'secure', the industry context implies it.Official Reference
- RFC 3411-3414: Message Processing and Dispatching for SNMPv3
- Cisco IOS XE SNMP Configuration Guide: https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr/snmp/index.html
- HIPAA Technical Safeguards (Transmission Security): https://www.hhs.gov/hipaa/for-professionals/security/index.html
Exam Strategy
Look for industry keywords (Healthcare, Finance, Government) in questions. These usually signal a requirement for security features like encryption or authentication, guiding you toward protocols that support them (e.g., SNMPv3 vs SNMPv2).
Frequently Asked Questions
Why not SNMPv2 for MPLS?
SNMPv2 (specifically v2c) sends community strings and data in plaintext. In a healthcare context, this exposes sensitive data, violating security standards.
Does MPLS provide enough security?
MPLS provides logical isolation but not necessarily encryption for the payload. Application-layer security like SNMPv3 is still required for sensitive data.