nerdexam
CompTIA

JK0-018 · Question #777

A network administrator wants to block both DNS requests and zone transfers coming from outside IP addresses. The company uses a firewall which implements an implicit allow and is currently…

The correct answer is A. Change the firewall default settings so that it implements an implicit deny F. Add the following ACL at the bottom of the current ACLDENY IP ANY ANY 53. See the full explanation below for the reasoning.

Question

A network administrator wants to block both DNS requests and zone transfers coming from outside IP addresses. The company uses a firewall which implements an implicit allow and is currently configured with the following ACL applied to its external interfacE. PERMIT TCP ANY ANY 80 PERMIT TCP ANY ANY 443 Which of the following rules would accomplish this task? (Select TWO).

Options

  • AChange the firewall default settings so that it implements an implicit deny
  • BApply the current ACL to all interfaces of the firewall
  • CRemove the current ACL
  • DAdd the following ACL at the top of the current ACLDENY TCP ANY ANY 53
  • EAdd the following ACL at the bottom of the current ACLDENY ICMP ANY ANY 53
  • FAdd the following ACL at the bottom of the current ACLDENY IP ANY ANY 53

How the community answered

(29 responses)
  • A
    72% (21)
  • B
    14% (4)
  • C
    7% (2)
  • D
    3% (1)
  • E
    3% (1)

Community Discussion

No community discussion yet for this question.

Full JK0-018 Practice