nerdexam
(ISC)2(ISC)2

SSCP · Question #1005

SSCP Question #1005: Real Exam Question with Answer & Explanation

The correct answer is A: A bastion host. The Internet Security Glossary (RFC2828) defines a bastion host as a strongly protected computer that is in a network protected by a firewall (or is part of a firewall) and is the only host (or one of only a few hosts) in the network that can be directly accessed from networks on

Submitted by salim_om· Apr 18, 2026Network and Communications Security

Question

What can best be defined as a strongly protected computer that is in a network protected by a firewall (or is part of a firewall) and is the only host (or one of only a few hosts) in the network that can be directly accessed from networks on the other side of the firewall?

Options

  • AA bastion host
  • BA screened subnet
  • CA dual-homed host
  • DA proxy server

Explanation

The Internet Security Glossary (RFC2828) defines a bastion host as a strongly protected computer that is in a network protected by a firewall (or is part of a firewall) and is the only host (or one of only a few hosts) in the network that can be directly accessed from networks on the other side of the firewall.

Topics

#Bastion host#Network architecture#Firewall#DMZ

Community Discussion

No community discussion yet for this question.

Full SSCP PracticeBrowse All SSCP Questions