Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Eccouncil Exam 312-38 Topic 4 Question 97 Discussion

Actual exam question for Eccouncil's 312-38 exam
Question #: 97
Topic #: 4
[All 312-38 Questions]

A network designer needs to submit a proposal for a company, which has just published a web

portal for its clients on the internet. Such a server needs to be isolated from the internal network,

placing itself in a DMZ. Faced with this need, the designer will present a proposal for a firewall with

three interfaces, one for the internet network, another for the DMZ server farm and another for the

internal network. What kind of topology will the designer propose?

Show Suggested Answer Hide Answer
Suggested Answer: A

The topology that the network designer will propose is known as a screened subnet. This topology involves the use of two or more firewalls to create a network segment referred to as a demilitarized zone (DMZ). The DMZ acts as a buffer zone between the public internet and the internal network. It contains the public-facing servers, such as the web portal mentioned, which is isolated from the internal network for added security. The screened subnet topology typically includes a firewall at the network's edge connected to the internet, another firewall separating the DMZ from the internal network, and the DMZ itself. This setup allows for strict control of traffic between the internet, the DMZ, and the internal network, providing an additional layer of security.


Contribute your Thoughts:

Ressie
15 days ago
I'm just relieved the question didn't ask about setting up a 'Bastion Host' - that sounds like something you'd find in a medieval castle, not a network!
upvoted 0 times
...
Deangelo
16 days ago
This is a no-brainer, C) Multi-homed firewall all the way! Anything less and the company might as well just put the web portal on a billboard in the town square.
upvoted 0 times
...
Muriel
19 days ago
Hmm, I was thinking B) DMZ, External-Internal firewall, but I guess C) is the better option. Can't be too careful these days with all the hackers out there.
upvoted 0 times
Franklyn
3 days ago
I agree, C) Multi-homed firewall is a more secure option.
upvoted 0 times
...
...
Selma
28 days ago
I agree, C) Multi-homed firewall is the way to go. Gotta keep that web portal secure, am I right?
upvoted 0 times
Ceola
3 days ago
The network designer needs to make sure the firewall is configured properly to keep everything secure.
upvoted 0 times
...
Stevie
4 days ago
Agreed, we can't take any chances when it comes to protecting sensitive information.
upvoted 0 times
...
Kathryn
5 days ago
It's important to have that extra layer of security for the web portal.
upvoted 0 times
...
Cheryll
11 days ago
Definitely, a multi-homed firewall is the best option for this scenario.
upvoted 0 times
...
...
Delmy
1 months ago
But with a Multi-homed firewall, the DMZ server farm can be isolated effectively.
upvoted 0 times
...
Ma
1 months ago
The correct answer is C) Multi-homed firewall. This topology isolates the web portal from the internal network, as required in the scenario.
upvoted 0 times
Caren
10 days ago
D: Thanks for clarifying. I'll go with C) Multi-homed firewall then.
upvoted 0 times
...
Mel
19 days ago
C: Oh, that makes sense. It would isolate the web portal from the internal network.
upvoted 0 times
...
Kaitlyn
25 days ago
B: No, I believe it's C) Multi-homed firewall.
upvoted 0 times
...
Royce
28 days ago
A: I think the answer is A) Screened subnet.
upvoted 0 times
...
...
Stevie
2 months ago
I disagree, I believe the best option is a Screened subnet.
upvoted 0 times
...
Delmy
2 months ago
I think the designer will propose a Multi-homed firewall.
upvoted 0 times
...

Save Cancel