🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 10 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

A security analyst is hardening a legacy application server that must accept incoming TCP 8443 traffic only from the internal load balancer and initiate outbound TCP 1433 sessions to a dedicated database subnet. All other traffic must be blocked. The host-based firewall evaluates rules from top to bottom. Which rule set BEST enforces least-privilege port and protocol filtering?

  • Allow inbound TCP 8443 from the load balancer subnet; allow outbound all TCP ports to any destination; deny all other traffic.

  • Allow inbound TCP 8443 from the load balancer subnet; allow outbound TCP 1433 to the database subnet; deny all other traffic.

  • Allow inbound TCP 8443 from any source; allow outbound TCP 1433 to any destination; deny all other traffic.

  • Allow inbound all TCP ports from any source; allow outbound TCP 1433 to the database subnet; deny all other traffic.

ISC2 Systems Security Certified Practitioner (SSCP)
Systems and Application Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot