nerdexam
CompTIACompTIA

CNX-001 · Question #64

CNX-001 Question #64: Real Exam Question with Answer & Explanation

The correct answer is D: WAF. WAF: Protects the web application by inspecting incoming HTTP/HTTPS requests at the load balancer, blocking SQL injection, XSS, and other common web attacks. NSG: Enforces network-layer controls on the VMs' subnets or interfaces, allowing only approved ports and IP ranges to reac

Cloud Network Security

Question

A network security engineer must secure a web application running on virtual machines in a public cloud. The virtual machines are behind an application load balancer. Which of the following technologies should the engineer use to secure the virtual machines? (Choose two.)

Options

  • ACDN
  • BDLP
  • CIDS
  • DWAF
  • ESIEM
  • FNSG

Explanation

WAF: Protects the web application by inspecting incoming HTTP/HTTPS requests at the load balancer, blocking SQL injection, XSS, and other common web attacks. NSG: Enforces network-layer controls on the VMs' subnets or interfaces, allowing only approved ports and IP ranges to reach the application servers.

Topics

#Web Application Security#Cloud VM Security#Network Security Groups#WAF

Community Discussion

No community discussion yet for this question.

Full CNX-001 PracticeBrowse All CNX-001 Questions