
EC-CouncilNetwork Defense Essentials
Domain 3Objective 2
Firewall Technologies, Architectures, and Best Practices NDE Practice Questions (Page 1)
Part of the Technical Security Controls domain, which makes up ~16% of our current practice bank.
38questions here
8free pages
8concepts
Questions 1–5
- 1
An organization wants to deploy a DMZ with two firewalls: one connected to the internet and one connected to the internal network. The DMZ sits between them. What is this architecture commonly called?
Select an answer first - 2
An organization is choosing between a screened subnet and a dual-homed host architecture. They have a high-security requirement and a moderate budget. Which factor most strongly favors the screened subnet?
Select an answer first - 3
A firewall administrator is troubleshooting a connectivity issue. Users on the internal network can access the internet, but they cannot access a specific internal server on port 3389 (RDP). The firewall logs show no blocked packets for that traffic. What is the most likely cause?
Select an answer first - 4
Which firewall policy principle states that all traffic should be denied unless it is explicitly allowed?
Select an answer first - 5
A network administrator is reviewing firewall rules and finds several rules that allow inbound RDP from the entire internet to internal servers. These rules were added months ago for a temporary remote-access project that has ended. What is the most appropriate action according to firewall best practices?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “NDE” is a trademark of its owner, used for identification only.