nerdexam
CompTIA

CNX-001 · Question #64

A network security engineer must secure a web application running on virtual machines in a public cloud. The virtual machines are behind an application load balancer. Which of the following…

The correct answer is D. WAF F. NSG. WAF: Protects the web application by inspecting incoming HTTP/HTTPS requests at the load balancer, blocking SQL injection, XSS, and other common web attacks. NSG: Enforces network-layer controls on the VMs' subnets or interfaces, allowing only approved ports and IP ranges to…

Cloud Network Security

Question

A network security engineer must secure a web application running on virtual machines in a public cloud. The virtual machines are behind an application load balancer. Which of the following technologies should the engineer use to secure the virtual machines? (Choose two.)

Options

  • ACDN
  • BDLP
  • CIDS
  • DWAF
  • ESIEM
  • FNSG

How the community answered

(42 responses)
  • A
    2% (1)
  • B
    7% (3)
  • C
    14% (6)
  • D
    74% (31)
  • E
    2% (1)

Explanation

WAF: Protects the web application by inspecting incoming HTTP/HTTPS requests at the load balancer, blocking SQL injection, XSS, and other common web attacks. NSG: Enforces network-layer controls on the VMs' subnets or interfaces, allowing only approved ports and IP ranges to reach the application servers.

Topics

#Web Application Security#Cloud VM Security#Network Security Groups#WAF

Community Discussion

No community discussion yet for this question.

Full CNX-001 Practice