nerdexam
CompTIA

SY0-701 · Question #544

Which of the following provides the best protection against unwanted or insecure communications to and from a device?

The correct answer is B. Host-based firewall. A host-based firewall directly controls which network communications are allowed to and from a device by filtering traffic based on rules - making it the most targeted protection against unwanted or insecure connections at the device level. Why the distractors fall short: A…

Submitted by skyler.x· Mar 6, 2026Threats, vulnerabilities, and mitigations

Question

Which of the following provides the best protection against unwanted or insecure communications to and from a device?

Options

  • ASystem hardening
  • BHost-based firewall
  • CIntrusion detection system
  • DAnti-malware software

How the community answered

(53 responses)
  • A
    6% (3)
  • B
    91% (48)
  • C
    2% (1)
  • D
    2% (1)

Explanation

A host-based firewall directly controls which network communications are allowed to and from a device by filtering traffic based on rules - making it the most targeted protection against unwanted or insecure connections at the device level.

Why the distractors fall short:

  • A. System hardening reduces attack surface (disabling services, patching, removing defaults) but doesn't actively filter live network traffic.
  • C. Intrusion detection system (IDS) monitors and alerts on suspicious traffic but doesn't block it - it's passive, not preventive.
  • D. Anti-malware targets malicious software already on or entering the device, not network communications broadly.

Memory tip: Think of a host-based firewall as a bouncer at the device's door - it decides who gets in and out. An IDS is the security camera (watches but doesn't stop), anti-malware is the pest control (deals with things already inside), and hardening is reinforcing the walls (reduces entry points but doesn't check traffic).

Topics

#Host-based firewall#Endpoint security#Network security#Traffic filtering

Community Discussion

No community discussion yet for this question.

Full SY0-701 Practice