exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 815 discussion

Actual exam question from CompTIA's SY0-601
Question #: 815
Topic #: 1
[All SY0-601 Questions]

Which of the following is the most effective way to protect an application server running software that is no longer supported from network threats?

  • A. Air gap
  • B. Barricade
  • C. Port security
  • D. Screened subnet
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
johnabayot
Highly Voted 1 year, 3 months ago
Selected Answer: D
One of the most effective ways to protect an application server is to use a screened subnet. A screened subnet is a network segment that is isolated from both the internet and the internal network by two firewalls. The application server is placed in the screened subnet, also known as the demilitarized zone (DMZ), and only the necessary ports are opened for communication. This way, the application server is shielded from external attacks and internal breaches, and the impact of a compromise is minimized.
upvoted 17 times
...
1403ad2
Highly Voted 1 year, 2 months ago
Selected Answer: D
choose D 2024-20-2 On Test and passed with 802
upvoted 11 times
...
Honeybadge
Most Recent 5 months, 1 week ago
Selected Answer: D
An air gap involves completely isolating the server from any network. While this provides strong security, it's not practical for an application server that needs to interact with other systems or users.
upvoted 1 times
...
spencer0328
10 months, 1 week ago
Selected Answer: A
The most effective way to protect an application server with unsupported software is to use an air gap. An air gap physically isolates the server from all network connections, eliminating the possibility of network-based attacks. This level of isolation is crucial for unsupported software, which is particularly vulnerable to exploits due to the lack of security updates. In contrast, a screened subnet would still expose the server to some degree of risk because it allows controlled external access. While it mitigates some threats by isolating the server from the internal network, it does not provide the complete isolation that an air gap does .
upvoted 3 times
...
LayinCable
11 months, 1 week ago
Selected Answer: A
Its Air Gapping. They use this same technique on factory robotics, that way they cannot be overran and malfunction due to a malicious attacker BECAUSE they are literally cut off from the rest of the network AND the internet. They have no outward facing components.
upvoted 3 times
...
AspiringNerd
11 months, 4 weeks ago
Selected Answer: D
Screened subnet..AKA demilitarized zone (DMZ).
upvoted 2 times
...
_deleteme_
1 year ago
A - Air Gapping is isolating a system physically by disconnecting it from all networks. Physical separation is one of the most secure methods of security, but still vulnerable from sophisticated attack.
upvoted 2 times
...
Imjusthere00
1 year, 1 month ago
Selected Answer: A
I believe it’s Air Gap
upvoted 4 times
...
slapster
1 year, 2 months ago
Selected Answer: D
I like answer choice D here -- screened subnet. An air gap would remove the server from the network completely, and would certainly be employed in an incident response where isolation-based containment is needed. If they are still needing to use the application server, however, and simply employ compensating controls, a screened subnet is better. CompTIA Section 9A: "A screened subnet uses two firewalls placed on either side of the DMZ. The edge firewall restricts traffic on the external/public interface and allows permitted traffic to the hosts in the DMZ. The edge firewall can be referred to as the screening firewall or router. The internal firewall filters communications between hosts in the DMZ and hosts on the LAN. This firewall is often described as the choke firewall. A choke point is a purposefully narrow gateway that facilitates better access control and easier monitoring."
upvoted 3 times
...
TM78
1 year, 2 months ago
Selected Answer: D
D. Screened subnet ~ It’s an application server. Why would anyone air gap an application server? That would make it useless.
upvoted 5 times
...
kewokil120
1 year, 2 months ago
Selected Answer: D
One of the most effective ways to protect an application server is to use a screened subnet. A screened subnet is a network segment that is isolated from both the internet and the internal network by two firewalls. The application server is placed in the screened subnet, also known as the demilitarized zone (DMZ), and only the necessary ports are opened for communication. This way, the application server is shielded from external attacks and internal breaches, and the impact of a compromise is minimized.
upvoted 2 times
...
Payu1994
1 year, 2 months ago
A. Air gap Explanation: Air gap (Option A): An air gap involves physically isolating a system or network from external networks, ensuring that there is no direct connection. This isolation significantly reduces the risk of network threats, as there are no pathways for malicious actors to exploit vulnerabilities remotely. It is particularly effective for systems running unsupported software because it provides a strong barrier against external attacks.
upvoted 2 times
johnabayot
1 year, 2 months ago
Airgap is an extreme form of isolation, where a network has no physical or wireless connection to any other network. Notice the question mentioned "an application server running aoftware" based on this you want to balance your option with security and functionality and this what makes Screened Subnet suffice.
upvoted 5 times
...
...
caseymd85
1 year, 2 months ago
Selected Answer: A
A. air gap A screened subnet is still accessible.
upvoted 1 times
...
dfc6822
1 year, 3 months ago
A. Air gap The most effective way to protect an application server running software that is no longer supported from network threats is to use an air gap.
upvoted 1 times
johnabayot
1 year, 2 months ago
Airgap is an extreme form of isolation, where a network has no physical or wireless connection to any other network. Notice the question mentioned "an application server running aoftware" based on this you want to balance your option with security and functionality and this what makes Screened Subnet suffice.
upvoted 1 times
...
...
ganymede
1 year, 3 months ago
Selected Answer: A
A. Air gap
upvoted 1 times
...
Jay987654
1 year, 3 months ago
Selected Answer: A
The most effective way to protect an application server running unsupported software from network threats is A. Air gap. An air gap is a security measure that physically isolates a computer or network from other systems and networks, including the internet. This means that there is no direct connection between the air-gapped system and any other system, making it impossible for network-based threats to reach the isolated system.
upvoted 2 times
...
Hs1208
1 year, 3 months ago
Selected Answer: D
D. Screened subnet
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago