🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 8 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

Your Windows Server 2019 file server sits on a flat network without a perimeter firewall. The server must accept SMB traffic on TCP port 445 only from the 10.10.0.0/16 corporate subnet; every other inbound connection must be denied, while outbound traffic for Windows Update and monitoring should remain unrestricted. In Windows Defender Firewall with Advanced Security, which configuration best fulfills these requirements while adhering to the principle of least privilege?

  • Set the inbound default action to Allow on all profiles, add a block rule for TCP 445 from any address except 10.10.0.0/16, and change the outbound default action to Block.

  • Leave both inbound and outbound default actions set to Allow and add an allow rule for TCP 445 from any address to simplify connectivity management.

  • Set the inbound default action to Block on all profiles, create a single allow rule for TCP 445 limited to remote addresses 10.10.0.0/16, and leave the outbound default action at Allow.

  • Disable Windows Defender Firewall and rely solely on router ACLs that permit TCP 445 from 10.10.0.0/16 while blocking other ports.

ISC2 Systems Security Certified Practitioner (SSCP)
Systems and Application Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot