CNX-001 · Question #4
Security policy states that all inbound traffic to the environment needs to be restricted, but all external outbound traffic is allowed within the hybrid cloud environment. A new application server…
The correct answer is D. Firewall E. Network security group. A perimeter firewall enforces the organization's "deny inbound by default, allow all outbound" policy at the edge of the cloud environment, while an Azure-style NSG applies the same rule set at the VM/subnet level. Together they ensure no inbound connections slip through and…
Question
Security policy states that all inbound traffic to the environment needs to be restricted, but all external outbound traffic is allowed within the hybrid cloud environment. A new application server was recently set up in the cloud. Which of the following would most likely need to be configured so that the server has the appropriate access set up? (Choose two.)
Options
- AApplication gateway
- BIPS
- CPort security
- DFirewall
- ENetwork security group
- FScreened subnet
How the community answered
(27 responses)- A11% (3)
- B7% (2)
- D78% (21)
- F4% (1)
Explanation
A perimeter firewall enforces the organization's "deny inbound by default, allow all outbound" policy at the edge of the cloud environment, while an Azure-style NSG applies the same rule set at the VM/subnet level. Together they ensure no inbound connections slip through and that outbound traffic remains unrestricted.
Topics
Community Discussion
No community discussion yet for this question.