CompTIACompTIA
SY0-701 · Question #501
SY0-701 Question #501: Real Exam Question with Answer & Explanation
Sign in or unlock SY0-701 to reveal the answer and full explanation for question #501. The question stem and answer options stay visible for context.
Submitted by fatima_kr· Mar 6, 2026CompTIA Security+ / Network+ - Network Security: Implementing and configuring firewall rules and access control lists to restrict network access to specific hosts
Question
The security team has been asked to only enable host A (10.2.2.7) and host B (10.3.9.9) to the new isolated network segment (10.9.8.14) that provides access to legacy devices. Access from all other hosts should be blocked. Which of the following entries would need to be added on the firewall? A. B. C. D.
Options
- APermit 10.2.2.0/24 to 10.9.8.14/27 Permit 10.3.9.0/24 to 10.9.8.14/27 Deny 0.0.0.0/0 to 10.9.8.14/27
- BDeny 0.0.0.0/0 to 10.9.8.14/27 Permit 10.2.2.0/24 to 10.9.8.14/27 Permit 10.3.9.0/24 to 10.9.8.14/27
- CPermit 10.2.2.7/32 to 10.9.8.14/27 Permit 10.3.9.9/32 to 10.9.8.14/27 Deny 0.0.0.0/0 to 10.9.8.14/27
- DPermit 10.2.2.7/32 to 10.9.8.14/27 Permit 10.3.9.0/24 to 10.9.8.14/27 Deny 10.9.8.14/27 to 0.0.0.0/0
Unlock SY0-701 to see the answer
You've previewed enough free SY0-701 questions. Unlock SY0-701 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#Firewall ACL Rules#Access Control Lists#Network Security#Subnetting