Security ArchitectureQuestion 28 of 100

Which network area sits between the internet and the internal network to host public-facing services?

a.Intranet
b.VPN concentrator
c.Air gap
d.Screened subnet (DMZ)

Explanation

A screened subnet, historically called a DMZ, isolates public-facing servers from the internal network. If a public host is compromised, the internal network remains protected by an additional boundary. Firewalls control traffic on both sides.

Practice all 100 questions free — no signup required.

Related questions on this topic

Last reviewed: · editorial process

PrepPass Editorial Team · Verified against CompTIA Security+ (SY0-701) · How we review
Report