N10-005 · Question #656
company wants the public to be able to connect to the wireless network with minimal security, but not be able to connect to the private internal network. Which of the following firewall rules would…
The correct answer is C. Block traffic from the wireless access point. To allow public users on the wireless network to access the Internet while preventing them from reaching the private internal network, a firewall rule should block traffic originating from the wireless access point (or its associated subnet) from reaching the internal private…
Question
company wants the public to be able to connect to the wireless network with minimal security, but not be able to connect to the private internal network. Which of the following firewall rules would BEST accomplish this?
Options
- AContent filtering on the wireless access point
- BAllow traffic from the wireless access point
- CBlock traffic from the wireless access point
- DPacket filtering on the wireless access point
How the community answered
(31 responses)- A13% (4)
- B3% (1)
- C77% (24)
- D6% (2)
Explanation
To allow public users on the wireless network to access the Internet while preventing them from reaching the private internal network, a firewall rule should block traffic originating from the wireless access point (or its associated subnet) from reaching the internal private network. This creates network segmentation: public wireless users can browse the Internet freely but are denied access to internal resources. Content filtering restricts specific types of web content but does not separate the wireless network from the internal network. Allowing traffic from the WAP would grant access, not restrict it. Packet filtering is a generic term for a firewall mechanism, not a specific rule - the correct specific rule is to block traffic from the wireless segment toward the private internal network.
Topics
Community Discussion
No community discussion yet for this question.