nerdexam
CompTIA

CV0-004 · Question #110

A cloud engineer hardened the WAF for a company that operates exclusively in North America. The engineer did not make changes to any ports, and all protected applications have continued to function…

The correct answer is B. The engineer blocked all traffic originating outside the region. Since the company operates exclusively in North America, restricting traffic from outside the region is an effective WAF hardening measure to reduce exposure to potential attacks. This helps mitigate threats such as DDoS attacks, automated bot traffic, and unauthorized access…

Security

Question

A cloud engineer hardened the WAF for a company that operates exclusively in North America. The engineer did not make changes to any ports, and all protected applications have continued to function as expected. Which of the following configuration changes did the engineer most likely apply?

Options

  • AThe engineer implemented MFA to access the WAF configurations.
  • BThe engineer blocked all traffic originating outside the region.
  • CThe engineer installed the latest security patches on the WAF.
  • DThe engineer completed an upgrade from TLS version 1.1 to version 1.3.

How the community answered

(42 responses)
  • A
    5% (2)
  • B
    71% (30)
  • C
    17% (7)
  • D
    7% (3)

Explanation

Since the company operates exclusively in North America, restricting traffic from outside the region is an effective WAF hardening measure to reduce exposure to potential attacks. This helps mitigate threats such as DDoS attacks, automated bot traffic, and unauthorized access attempts from regions where the company does not serve customers.

Topics

#WAF#Geo-blocking#Network Security#Traffic Filtering

Community Discussion

No community discussion yet for this question.

Full CV0-004 Practice