A global organization keeps personnel application servers th - CompTIA Server+ SK0-005

Question

A global organization keeps personnel application servers that are local to each country. However, a security audit shows these application servers are accessible from sites in other countries.
Which of the following hardening techniques should the organization use to restrict access to only sites that are in the same country?

Answers
  1. correct
Explanation

The Correct Answer is: A. Configure a firewall
To restrict access to application servers so that only traffic from within the same country is allowed, the organization should configure a firewall with geo-IP filtering. This technique allows or blocks traffic based on the geographic location of the IP address, ensuring that only users from specific regions (in this case, the same country) can access the server.

Why the other options are incorrect:

  • B. Close the unneeded ports
    While important for reducing attack surfaces, closing ports doesn't restrict access by geographic location. It controls access by service, not by location.

  • C. Install a HIDS (Host-based Intrusion Detection System)
    A HIDS monitors for suspicious activity on a host but does not actively block traffic or enforce geographic access restrictions.

  • D. Disable unneeded services
    Disabling unnecessary services improves security but, like closing ports, it does not provide geo-location-based access control.

Related Courses

Discover a range of courses designed to provide you with the knowledge and skills needed to excel in your chosen field.

a prepsaret exam featured image
CompTIA Prep

220-1201 - CompTIA A+ Exam Core 1

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

220-1202 - CompTIA A+ Exam Core 2

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA SecurityX CAS-005

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Cloud Essentials+ CLO-002

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Network+ N10-009

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Security+ SY0-701

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Data + DA0-001

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Pentest+

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Linux+ XK0-005

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA CySA+ CSO-003

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA DataSys+ DS0-001

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Tech+ FC0-U71

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Cloud+ CV0-004

Start Course Prep

Easy way to pass your test within a week with prepsaret

You don’t need one month to study and pass your test.
With Prepsaret, it takes you a few days to grasp all the concepts needed to pass your exams

View Courses Offered