CompTIA Network+ (N10-006) — Question 37

A network technician needs to set up two public facing web servers and wants to ensure that if they are compromised the intruder cannot access the intranet.
Which of the following security techniques should be used?

Answer options

Correct answer:

Explanation

The correct answer is D, placing the servers in the demilitarized zone (DMZ), which isolates them from the intranet and minimizes the risk of intruders accessing internal resources. Option A, placing them behind honeypots, does not provide direct security for the servers themselves. Option B, placing them in a separate subnet, offers some isolation but may not be sufficient on its own. Option C, placing them between two internal firewalls, could complicate the configuration without providing the necessary isolation from the intranet.