nerdexam
CompTIA

CV0-003 · Question #115

Which of the following is a zone, within a network, that is MOST likely to be accessed by both internal and external hosts?

The correct answer is C. DMZ. A DMZ is a perimeter network segment specifically architected to be reachable from both the internal trusted network and the external internet, making it the correct answer. It hosts public-facing services while providing a security boundary that separates them from the…

Security

Question

Which of the following is a zone, within a network, that is MOST likely to be accessed by both internal and external hosts?

Options

  • AIntranet
  • BVPN
  • CDMZ
  • DManagement VLAN

How the community answered

(70 responses)
  • A
    3% (2)
  • B
    1% (1)
  • C
    91% (64)
  • D
    4% (3)

Why each option

A DMZ is a perimeter network segment specifically architected to be reachable from both the internal trusted network and the external internet, making it the correct answer. It hosts public-facing services while providing a security boundary that separates them from the internal network.

AIntranet

An intranet is a private internal network accessible only to authorized employees and internal systems; it is intentionally isolated from external hosts on the public internet.

BVPN

A VPN extends private network connectivity to authenticated remote users over an encrypted tunnel but does not define a shared zone that unauthenticated external hosts can access directly.

CDMZCorrect

A DMZ (Demilitarized Zone) is a network zone positioned between internal and external firewall boundaries, with rules that permit both internal users and external internet hosts to access services hosted there - such as web servers, mail relays, and DNS - while preventing direct external access to the internal network.

DManagement VLAN

A management VLAN is a dedicated internal segment used to administer network infrastructure devices such as switches and routers; it is isolated from external access as a fundamental security control.

Concept tested: DMZ as a dual-access perimeter network zone

Source: https://www.cisco.com/c/en/us/support/docs/security/pix-500-series-security-appliances/62829-pix-dmz.html

Topics

#DMZ#network zones#internal external access#security architecture

Community Discussion

No community discussion yet for this question.

Full CV0-003 Practice