nerdexam
CSA

CCSK · Question #112

What is true of Software Defined Network firewalls?

The correct answer is E. They are not limited based on physical topology. SDN firewalls are software-defined policy sets applied at a logical layer, making them independent of physical network topology or hardware boundaries.

Cloud Platform and Infrastructure Security

Question

What is true of Software Defined Network firewalls?

Options

  • AThey are policy sets that can only be applied to similar grouped assets
  • BThey require the use of static IP addresses
  • CThey are more difficult to manage
  • DThey are limited based on physical topology
  • EThey are not limited based on physical topology

How the community answered

(37 responses)
  • B
    3% (1)
  • C
    8% (3)
  • D
    5% (2)
  • E
    84% (31)

Why each option

SDN firewalls are software-defined policy sets applied at a logical layer, making them independent of physical network topology or hardware boundaries.

AThey are policy sets that can only be applied to similar grouped assets

SDN firewall policies can be applied to diverse and dissimilar asset groups because they operate on logical identifiers and tags rather than physical network location or asset type.

BThey require the use of static IP addresses

SDN firewalls do not require static IP addresses because policy enforcement is based on software-defined identifiers and workload attributes, not fixed IP-based rules.

CThey are more difficult to manage

SDN firewalls are generally easier to manage than traditional hardware firewalls because policy changes are applied centrally through a controller without requiring physical reconfiguration.

DThey are limited based on physical topology

SDN firewalls are specifically designed to overcome physical topology constraints, so being limited by physical topology is the opposite of their defining characteristic.

EThey are not limited based on physical topologyCorrect

SDN firewalls are not limited by physical topology because they are implemented as software policies within a software-defined networking layer, allowing security rules to follow workloads wherever they are instantiated in the infrastructure. Policies attach to logical identifiers such as tags or groups rather than physical ports or IP subnets, enabling consistent enforcement regardless of physical placement.

Concept tested: SDN firewall policy flexibility beyond physical topology

Source: https://www.vmware.com/topics/glossary/content/software-defined-networking.html

Topics

#SDN firewalls#software defined networking#network virtualization#virtual networks

Community Discussion

No community discussion yet for this question.

Full CCSK Practice