exam questions

Exam SY0-501 All Questions

View all questions & answers for the SY0-501 exam

Exam SY0-501 topic 1 question 884 discussion

Actual exam question from CompTIA's SY0-501
Question #: 884
Topic #: 1
[All SY0-501 Questions]

HOTSPOT -
The security administration has installed a new firewall which implements an implicit DENY policy by default.

INSTRUCTIONS -
Click on the firewall and configure it to allow ONLY the following communication:
✑ The Accounting workstation can ONLY access the web server on the public network over the default HTTPS port. The accounting workstation should not access other networks.
✑ The HR workstation should be restricted to communicate with the Financial server ONLY, over the default SCP port.
✑ The Admin workstation should ONLY be able to access the server on the secure network over the default TFTP port.
The firewall will process the rules in a top-down manner in order as a first match. The port number must be typed in and only one port number can be entered per rule. Type ANY for all ports.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.

Hot Area:

Show Suggested Answer Hide Answer
Suggested Answer:

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
suje
Highly Voted 3 years, 11 months ago
This one was on my exam 06-15-2021
upvoted 11 times
Berlus
3 years, 6 months ago
Did you take 501 or 601?
upvoted 1 times
...
...
Heymannicerouter
Highly Voted 4 years ago
Answer looks mostly right to me except I would select UDP instead of ANY for the last 2 rules, as TFTP only uses UDP even if TCP port 69 is assigned to it.
upvoted 11 times
fonka
3 years, 10 months ago
TFTP is a simple protocol for transferring files, implemented on top of the UDP/IP protocols using well-known port number 69.
upvoted 1 times
...
...
prntscrn23
Most Recent 3 years, 10 months ago
" The HR workstation should be restricted to communicate with the Financial server ONLY, over the default SCP port." It says HR is restricted to Financial server but on the policy item 2 it shows hr ip allows to connect financial server via scp. Any thoughts?
upvoted 1 times
...
madaraamaterasu
4 years ago
Yes TFTP should be 69
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...