As part of new compliance audit requirements, multiple servers need to be segmented on different networks and should be reachable only from authorized internal systems. Which of the following would meet the requirements?
Choose an answer
Tap an option to check your answer.
Correct answer: Deploy an internal jump server to access resources..
Why this is the answer
Deploying an internal jump server (also known as a bastion host) is the most effective solution. A jump server acts as a hardened, intermediary host that authorized administrators must connect to first before accessing other sensitive internal servers. This centralizes access control, logging, and monitoring, ensuring that internal systems are only reachable from a controlled and authorized point, meeting the segmentation and authorized access requirements. Configuring firewall rules is a necessary step but doesn't fully address the "reachable only from authorized internal systems" aspect as comprehensively as a jump server, which adds an extra layer of authentication and control. Setting up a WAP (Wireless Access Point) would introduce wireless access, potentially increasing the attack surface, and is not relevant to securing server access from internal systems. Implementing a new IPSec tunnel is used for secure communication between networks or hosts, not primarily for controlling internal access to segmented servers from authorized internal systems in this manner.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed