exam questions

Exam SY0-701 All Questions

View all questions & answers for the SY0-701 exam

Exam SY0-701 topic 1 question 579 discussion

Actual exam question from CompTIA's SY0-701
Question #: 579
Topic #: 1
[All SY0-701 Questions]

As part of new compliance audit requirements, multiple servers need to be segmented on different networks and should be reachable only from authorized internal systems. Which of the following would meet the requirements?

  • A. Configure firewall rules to block external access to Internal resources.
  • B. Set up a WAP to allow internal access from public networks.
  • C. Implement a new IPSec tunnel from internal resources.
  • D. Deploy an internal jump server to access resources.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Turrtle
2 months ago
Selected Answer: A
internal jump server provides a way to access internal systems, it doesn't necessarily restrict access at the network level. Firewall rules are the more appropriate choice to meet segmentation and access control requirements, which is an effective way to meet compliance audit requirement no?
upvoted 1 times
...
b6133b6
2 months ago
Selected Answer: D
isolated and authorized internal systems are the key words.
upvoted 3 times
...
Clau95
2 months, 1 week ago
Selected Answer: D
By using a jump server, you can restrict access to sensitive internal resources, ensuring that only authorized users can access the servers after authenticating through the jump server.
upvoted 1 times
...
test_arrow
2 months, 1 week ago
Selected Answer: A
A. Configure firewall rules to block external access to internal resources. Explanation: Network segmentation ensures that only authorized internal systems can access specific servers while preventing unauthorized access. Firewall rules can enforce this by blocking external access and allowing only approved internal traffic. This approach aligns with compliance audit requirements by implementing strict access controls and reducing the attack surface. Why Not the Other Options? B. Set up a WAP to allow internal access from public networks → A Wireless Access Point (WAP) extending access from public networks is insecure and contradicts the goal of segmentation. C. Implement a new IPSec tunnel from internal resources → IPSec tunnels encrypt traffic, but they do not inherently segment networks. Segmentation is about access control, not just encryption. D. Deploy an internal jump server to access resources → A jump server can centralize access, but without network segmentation, unauthorized traffic could still reach sensitive systems.
upvoted 1 times
...
PjoterK
2 months, 1 week ago
Selected Answer: D
D - Deploy an internal jump server to access resources.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago