ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 863 - N10-008 discussion

Report
Export

An older web server on a screened subnet is serving unencrypted web traffic. The server is not capable of serving HTTPS traffic directly but the firewall is capable of doing so. Which of the following should be done to encrypt all traffic coming into the web server from outside the network? (Select two).

A.
A certificate should be installed on the server
Answers
A.
A certificate should be installed on the server
B.
Incoming port 80 traffic at the firewall should Be forwarded to port 443 on the server.
Answers
B.
Incoming port 80 traffic at the firewall should Be forwarded to port 443 on the server.
C.
Incoming port 60 traffic at the firewall should be forwarded to port 80 on the server.
Answers
C.
Incoming port 60 traffic at the firewall should be forwarded to port 80 on the server.
D.
Incoming port 443 traffic at the firewall should be forwarded to port 80 on the server.
Answers
D.
Incoming port 443 traffic at the firewall should be forwarded to port 80 on the server.
E.
A certificate should be installed on the firewall
Answers
E.
A certificate should be installed on the firewall
F.
A proxy server should be Installed on the screened subnet.
Answers
F.
A proxy server should be Installed on the screened subnet.
Suggested answer: D, E

Explanation:

To secure the web traffic coming into an older web server that cannot handle HTTPS traffic, the firewall can be used to terminate the SSL connection. A certificate should be installed on the firewall to handle the encryption of traffic (port 443 is the default port for HTTPS traffic).The firewall can then forward the decrypted traffic to the web server on port 80, which is the default port for HTTP traffic.

asked 02/10/2024
louishn vn
24 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first