You are a network security engineer for a large corporation. The company is planning to launch a new sol access to this product over the internet. The company also wants to ensure that the internal production network remains secure. Which type of common security zone would be the MOST appropriate to implement in this scenario? Screened Subnet Wireless Extranet
Real Tutor Solution
Answer
Solution
Sign in to Unlock Answers for Free!
A Learning Platform Trusted by Millions of Real Students and Teachers.
Reviewed and approved by the UpStudy tutoring team
The Deep Dive
A screened subnet, often referred to as a DMZ (demilitarized zone), would be the most appropriate choice for this situation. It acts as a buffer zone where external users can access the public-facing services without directly compromising the internal network's security. By placing servers providing the new solution in the screened subnet, you maintain a level of isolation from the production environment, allowing secure external access while minimizing risks. On the flip side, an extranet is specifically designed to allow controlled access to your internal networks by external partners, clients, or collaborators. However, it typically requires a more complex access policy and robust security measures than a screened subnet. For a straightforward solution, especially when focusing on protecting production networks while offering external access, a screened subnet remains the safest and most efficient option to implement.