A global organization keeps personnel application servers that are local to each country. However, a security audit shows these application servers are accessible from sites in other countries.
Which of the following hardening techniques should the organization use to restrict access to only sites that are in the same country?
The Correct Answer is: A. Configure a firewall
To restrict access to application servers so that only traffic from within the same country is allowed, the organization should configure a firewall with geo-IP filtering. This technique allows or blocks traffic based on the geographic location of the IP address, ensuring that only users from specific regions (in this case, the same country) can access the server.
Why the other options are incorrect:
B. Close the unneeded ports
While important for reducing attack surfaces, closing ports doesn't restrict access by geographic location. It controls access by service, not by location.
C. Install a HIDS (Host-based Intrusion Detection System)
A HIDS monitors for suspicious activity on a host but does not actively block traffic or enforce geographic access restrictions.
D. Disable unneeded services
Disabling unnecessary services improves security but, like closing ports, it does not provide geo-location-based access control.
Discover a range of courses designed to provide you with the knowledge and skills needed to excel in your chosen field.
You don’t need one month to study and pass your test.
With Prepsaret, it takes you a few days to grasp all the concepts needed to pass your exams