exam questions

Exam 200-310 All Questions

View all questions & answers for the 200-310 exam

Exam 200-310 topic 2 question 152 discussion

Actual exam question from Cisco's 200-310
Question #: 152
Topic #: 2
[All 200-310 Questions]

Which of the following best describes a DMZ?

  • A. decentralized computer resources that can be accessed over the Internet
  • B. a network zone between the Internet and a private or trusted network
  • C. a portion of a private or trusted network that can be accessed by a business partner
  • D. websites available to only users inside a private network
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️
Section: Considerations for Expanding an Existing Network Explanation

A demilitarized zone (DMZ) is best described as a network zone between the Internet and a private or trusted network. A DMZ is typically used with an access control method to permit external users to access specific externally facing servers, such as web servers and proxy servers, without providing access to the rest of the internal network. This helps limit the attack surface of a network. DMZs are typically bordered by two firewalls: one that allows information to flow between the
DMZ and the Internet, and one that allows information to flow between the DMZ and the private, or trusted, network.
A portion of a private or trusted network that can be accessed by a business partner best describes an extranet, not a DMZ. An extranet is a portion of a company's internal network that is accessible to specific people outside of the company, such as business partners, suppliers, or customers. By creating an extranet, a company can provide a location for sharing information with external users. For example, a consulting company could create an extranet for external customers to view and comment on the consulting company's progress on various projects. In many extranet implementations, the external customer network shares a bilateral connection with the company's internal network. This bilateral connection not only enables the external customer to access portions of the company's internal network, but it also enables portions of the company's internal network to access the portions of the external customer's network.
Decentralized computer resources that can be accessed over the Internet describes an external cloud, not a DMZ. An external cloud allows for computer processes that are typically hosted internally to be moved to an external provider, which can reduce the burden on system and network resources. In cloud computing, there are two accepted types of cloud infrastructure: external and internal. External clouds are managed by a service provider and are further broken down into two categories: public and private. With public clouds, the service provider controls the cloud and its infrastructure, whereas with private clouds, the service provider controls only the infrastructure. Internal clouds are similar to private clouds, except that the cloud is owned and managed by the organization that uses it and not by a third-party service provider.
Websites available to only users inside a private network best describe an intranet, not a DMZ. An intranet can be created to provide internal users with their own website. An intranet provides a location for sharing information among members of the company. Unlike an extranet, which is a portion of the company's network that is accessible by people outside the company, an intranet is typically available only to internal users.
Reference:

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Currently there are no comments in this discussion, be the first to comment!
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...