CompTIA SecurityX (CAS-005) — Question 180
A company wants to implement a three-tier approach to separate the web, database, and application servers. A security administrator must harden the environment. Which of the following is the best solution?
Answer options
- A. Deploying a VPN to prevent remote locations from accessing server VLANs
- B. Configuring a SASE solution to restrict users to server communication
- C. Implementing microsegmentation on the server VLANs
- D. Installing a firewall and making it the network core
Correct answer: C
Explanation
Implementing microsegmentation on the server VLANs is the best solution because it isolates servers at a granular level, enhancing security by limiting lateral movement within the network. The other options either focus on restricting access rather than hardening server security or do not provide the same level of segmentation needed for a robust security posture.