Prepare for the CompTIA Cloud+ Certification with a comprehensive practice test. Test your knowledge on cloud architecture, deployment, security, and troubleshooting with detailed questions and answers. Enhance your readiness today!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


Which service provides permit and deny policies that require regular review to delete unused entries?

  1. DNS

  2. DHCP

  3. Firewalls

  4. Active Directory

The correct answer is: Firewalls

The choice of firewalls is accurate because they serve as critical security components that effectively manage network traffic based on predefined security rules. These rules, which include permit and deny policies, are essential for controlling access to network resources. Regular reviews of these policies help ensure that only necessary entries remain active, reducing potential vulnerabilities that can arise from unused or outdated rules. Unused entries can clutter the firewall's configuration, making it more challenging to manage, and can potentially lead to security loopholes if old permissions are not carefully supervised. While DNS, DHCP, and Active Directory each have their own specific functionalities within a network, they do not focus on the same aspect of traffic management and security control. DNS primarily resolves domain names, DHCP assigns IP addresses to devices, and Active Directory manages identities and access permissions rather than focusing on the intricacies of allowing or blocking traffic based on specific policies. Therefore, firewalls are uniquely positioned to enforce permit and deny policies that warrant ongoing review and maintenance for optimal security posture.