CompTIA Network+ (N10-008) — Question 141
A network engineer configured new firewalls with the correct configuration to be deployed to each remote branch. Unneeded services were disabled, and all firewall rules were applied successfully. Which of the following should the network engineer perform NEXT to ensure all the firewalls are hardened successfully?
Answer options
- A. Ensure an implicit permit rule is enabled
- B. Configure the log settings on the firewalls to the central syslog server
- C. Update the firewalls with current firmware and software
- D. Use the same complex passwords on all firewalls
Correct answer: C
Explanation
Updating the firewalls with current firmware and software (Option C) is crucial for security, as it ensures all known vulnerabilities are patched. Options A and D are not recommended practices, as an implicit permit rule can expose the network, and using the same password increases the risk of a security breach. While Option B is important for monitoring, it does not directly contribute to hardening the firewalls themselves.