nerdexam
CompTIACompTIA

CNX-001 · Question #29

CNX-001 Question #29: Real Exam Question with Answer & Explanation

The correct answer is A: Network security group rule:. Network security group rule: allow 10.2.3.9 to 10.2.2.7 Explicitly permits Server A's IP to reach Server B. Network security group rule: deny 0.0.0.0/0 to 10.2.0.0/16 Blocks all inbound traffic from any external source into the 10.2.0.0/16 address space, ensuring no external acce

Cloud Network Security

Question

Server A (10.2.3.9) needs to access Server B (10.2.2.7) within the cloud environment since they are segmented into different network sections. All external inbound traffic must be blocked to those servers. Which of the following need to be configured to appropriately secure the cloud network? (Choose two.)

Options

  • ANetwork security group rule:
  • BNetwork security group rule:
  • CNetwork security group rule:
  • DFirewall rule:
  • EFirewall rule:
  • FNetwork security group rule:

Explanation

Network security group rule: allow 10.2.3.9 to 10.2.2.7 Explicitly permits Server A's IP to reach Server B. Network security group rule: deny 0.0.0.0/0 to 10.2.0.0/16 Blocks all inbound traffic from any external source into the 10.2.0.0/16 address space, ensuring no external access.

Topics

#network security groups#cloud network security#traffic filtering#network segmentation

Community Discussion

No community discussion yet for this question.

Full CNX-001 PracticeBrowse All CNX-001 Questions