nerdexam
EC-Council

312-50V11 · Question #56

Which of the following security policies defines the use of VPN for gaining access to an internal corporate network?

The correct answer is D. Remote access policy. A remote access policy specifically defines the rules and requirements governing how users connect to corporate networks from external locations, including VPN use.

Information Security and Ethical Hacking Fundamentals

Question

Which of the following security policies defines the use of VPN for gaining access to an internal corporate network?

Options

  • ANetwork security policy
  • BInformation protection policy
  • CAccess control policy
  • DRemote access policy

How the community answered

(34 responses)
  • A
    3% (1)
  • B
    3% (1)
  • C
    6% (2)
  • D
    88% (30)

Why each option

A remote access policy specifically defines the rules and requirements governing how users connect to corporate networks from external locations, including VPN use.

ANetwork security policy

Network security policy governs the overall protection and configuration of network infrastructure components and does not specifically define remote access or VPN usage procedures.

BInformation protection policy

Information protection policy addresses the classification, handling, storage, and transmission of sensitive data rather than the mechanisms used to remotely connect to the corporate network.

CAccess control policy

Access control policy defines who can access which internal resources and under what conditions, but it does not specifically prescribe how remote connectivity technologies like VPN are established or used.

DRemote access policyCorrect

A remote access policy establishes who is authorized to connect remotely, which technologies (such as VPN) are approved, what authentication requirements must be met, and acceptable use conditions for remote sessions. VPN is the primary technology addressed by this policy type because it creates an encrypted tunnel between an external user and the internal corporate network. This policy directly controls the security posture of all remote connectivity to organizational resources.

Concept tested: Remote access policy scope covering VPN connectivity

Source: https://csrc.nist.gov/publications/detail/sp/800-46/rev-2/final

Topics

#remote access policy#VPN policy#security policy types#access control

Community Discussion

No community discussion yet for this question.

Full 312-50V11 Practice