nerdexam
CompTIA

CAS-002 · Question #687

John is setting up a public web server. He has decided to place it in the DMZ. Which firewall should have the tightest restrictions?

The correct answer is B. Inner end of the DMZ. The inner firewall is the one that protects the actual network from the outside world. Also it is usually necessary to allow far more users to connect to the web server than you allow into your Answer option C is incorrect. The outer end of the DMZ must have less restrictions…

Technical Integration of Enterprise Components

Question

John is setting up a public web server. He has decided to place it in the DMZ. Which firewall should have the tightest restrictions?

Options

  • AOn the web server itself
  • BInner end of the DMZ
  • COuter end of the DMZ
  • DThe restrictions should be consistent

How the community answered

(30 responses)
  • A
    3% (1)
  • B
    77% (23)
  • C
    13% (4)
  • D
    7% (2)

Explanation

The inner firewall is the one that protects the actual network from the outside world. Also it is usually necessary to allow far more users to connect to the web server than you allow into your Answer option C is incorrect. The outer end of the DMZ must have less restrictions in order to allow a variety of outside users to connect to the web server. Answer option A is incorrect. If you have a firewall on the web server itself, it should be consistent with the outer end of the DMZ. Answer option D is incorrect. The inner end of the DMZ should be the most secure.

Topics

#DMZ#firewall policy#network segmentation#web server security

Community Discussion

No community discussion yet for this question.

Full CAS-002 Practice