Network Security第 65 / 100 题
Which network segment is designed to host public-facing servers while isolating them from the internal LAN?
a.Screened subnet (DMZ)
b.Native VLAN
c.Loopback interface
d.Broadcast domain
解析
A screened subnet, commonly called a DMZ, hosts public-facing services like web and mail servers in an isolated zone between the internet and the internal network. If a DMZ host is compromised, the internal LAN remains protected. Firewalls control traffic in and out of the DMZ.
免费刷完整 100 道题库 — 无需注册。
同考点相关题目
- A firewall rule set should end with which type of rule to enforce a secure default posture?
- Which attack floods a switch's MAC address table to force it to broadcast frames out all ports?
- Which technology creates an encrypted tunnel over the public internet to securely connect a remote user to a corporate network?
- Which authentication framework provides port-based network access control, often used with RADIUS for wired and wireless clients?
- An attacker sends forged ARP replies to associate their MAC with the default gateway's IP. What is this attack called?
- Which principle dictates that users and processes should receive only the minimum access necessary to perform their tasks?